First published: Tue Nov 02 2021(Updated: )
A Universal XSS vulnerability was present in Firefox for Android resulting from improper sanitization when processing a URL scanned from a QR code. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 94.
Credit: security@mozilla.org security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | <94.0 | |
Google Android | ||
Mozilla Firefox | <94 | 94 |
All of | ||
Mozilla Firefox | <94.0 | |
Google Android |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-43530 is a Universal XSS vulnerability in Firefox for Android.
CVE-2021-43530 affects users of Firefox for Android by allowing attackers to execute malicious scripts on websites visited by the user.
The severity of CVE-2021-43530 is rated as high, with a severity value of 7.
To fix CVE-2021-43530, users should update their Firefox for Android to version 94 or higher, as recommended by Mozilla.
No, other operating systems are unaffected by CVE-2021-43530. This vulnerability only affects Firefox for Android.