First published: Sat May 30 2020(Updated: )
For native-to-JS bridging the app requires a unique token to be passed that ensures non-app code can't call the bridging functions. That token could leak when used for downloading files.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | <26.0 | |
All of | ||
Mozilla Firefox | =26 | |
Apple iOS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.