CVE-2023-49060: Critical severity firefox vulnerability
An attacker could have accessed internal pages or data by ex-filtrating a security key from ReaderMode via the referrerpolicy attribute. This vulnerability affects Firefox for iOS < 120.
Other sources
An attacker could have accessed internal pages or data by ex-filtrating a security key from ReaderMode via the referrerpolicy attribute.
— Mozilla
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-49060?
CVE-2023-49060 is a vulnerability in Firefox for iOS that could allow an attacker to access internal pages or data by extracting a security key from ReaderMode through the referrerpolicy attribute.
How does CVE-2023-49060 affect Firefox for iOS?
CVE-2023-49060 affects Firefox for iOS versions prior to 120.
What is the severity of CVE-2023-49060?
CVE-2023-49060 has a severity rating of high.
How can I fix CVE-2023-49060?
To fix CVE-2023-49060, users should update their Firefox for iOS to version 120 or higher.
Where can I find more information about CVE-2023-49060?
More information about CVE-2023-49060 can be found in the Mozilla Security Advisory MFSA2023-51.