CVE Database
/

CVE-2020-12404

Back to search

CVE-2020-12404

Published: Jul 9, 2020

Modified: Aug 4, 2024

PUBLISHED

Description

For native-to-JS bridging the app requires a unique token to be passed that ensures non-app code can't call the bridging functions. That token could leak when used for downloading files. This vulnerability affects Firefox for iOS < 26.

VendorProductVersions

Mozilla

Firefox for iOS

affected
unspecified - < 26

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now