Mozilla Firefox
cpe:2.3:a:mozilla:firefox:*:*:*:*:android:*:*
- < 136
A tapjacking vulnerability has been identified in the Android version of Mozilla Firefox, prior to version 136. This issue involves a select option that can partially obscure the confirmation prompt displayed before launching external applications. As a result, a user could be misled into unintentionally opening an external app.
Exploitation of this vulnerability could lead to unintended interactions with external applications, potentially allowing for the misuse of app permissions or functionalities.
Users can update to Firefox version 136 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.