CVE-2021-43544: XSS
When receiving a URL through a SEND intent, Firefox would have searched for the text, but subsequent usages of the address bar might have caused the URL to load unintentionally, which could lead to XSS and spoofing attacks. This bug only affects Firefox for Android. Other operating systems are unaffected.. This vulnerability affects Firefox < 95.
Other sources
When receiving a URL through a SEND intent, Firefox would have searched for the text, but subsequent usages of the address bar might have caused the URL to load unintentionally, which could lead to XSS and spoofing attacks.This bug only affects Firefox for Android. Other operating systems are unaffected.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2021-43544?
CVE-2021-43544 is classified as a moderate severity vulnerability affecting Firefox for Android.
How do I fix CVE-2021-43544?
To fix CVE-2021-43544, update your Firefox for Android to version 95 or later.
What types of attacks does CVE-2021-43544 allow?
CVE-2021-43544 could lead to cross-site scripting (XSS) and spoofing attacks.
Which versions of Firefox are affected by CVE-2021-43544?
CVE-2021-43544 affects Firefox for Android versions prior to 95.0.
Is CVE-2021-43544 a risk on other operating systems?
No, CVE-2021-43544 only affects Firefox for Android and not other operating systems.