Mozilla Firefox for iOS Sandboxed Iframe Download Bypass Vulnerability

Vulnerability

A vulnerability exists in Firefox for iOS versions prior to 141, where sandboxed iframes on webpages could potentially allow downloads to the device. This behavior bypasses the expected sandbox restrictions set by the parent page.

Impact

Exploitation of this vulnerability could lead to unauthorized downloads on the user's device, circumventing sandbox protections.

Remediation

Users can upgrade to Firefox for iOS version 141 or later to address this vulnerability.

Added: Aug 19, 2025, 9:35 PM
Updated: Aug 19, 2025, 9:35 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
6.4
remediation
7.7
relevance
0.4
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.