CVE-2022-31746: Infoleak
Published Jun 29, 2022
·Updated
Internal URLs are protected by a secret UUID key, which could have been leaked to web page through the Referrer header.
Affected Software
3 affected components
Mozilla Firefox Iphone Os<102.0
All of the following
Mozilla Firefox=102
Apple iOS
Event History
Jun 29, 2022
CVE Published
12:00 AM
Dec 22, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-31746?
CVE-2022-31746 is classified as a moderate severity vulnerability due to the potential exposure of internal URLs.
2
How do I fix CVE-2022-31746?
To mitigate CVE-2022-31746, users should update Firefox for iOS to version 102.0 or later.
3
What can be exploited in CVE-2022-31746?
CVE-2022-31746 can be exploited through leaked UUID keys in the Referrer header that may reveal internal URLs.
4
Which versions of Firefox are affected by CVE-2022-31746?
CVE-2022-31746 affects Firefox for iOS versions prior to 102.0.
5
What platforms does CVE-2022-31746 impact?
CVE-2022-31746 specifically impacts Firefox running on iOS devices.