CVE-2024-5022: Medium severity Mozilla Focus vulnerability
Published May 16, 2024
·Updated
The file scheme of URLs would be hidden, resulting in potential spoofing of a website's address in the location bar
Affected Software
3 affected components
All of the following
Mozilla Focus=126
Apple iOS
Mozilla Firefox Focus Iphone Os<126.0
Event History
May 16, 2024
CVE Published
via Mozilla·12:00 AM
May 17, 2024
CVE Published
via MITRE·06:42 PM
Data Sourced
via MITRE·06:42 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-5022?
CVE-2024-5022 is classified as a medium severity vulnerability due to its potential for website address spoofing.
2
How do I fix CVE-2024-5022?
To mitigate CVE-2024-5022, users should update Mozilla Focus for iOS to version 126 or later.
3
Who is affected by CVE-2024-5022?
CVE-2024-5022 affects users of Mozilla Focus on iOS versions prior to 126.
4
What type of attack can CVE-2024-5022 facilitate?
CVE-2024-5022 can facilitate phishing attacks by hiding the file scheme of URLs, leading to user deception.
5
What systems are mitigated from CVE-2024-5022?
Systems running Mozilla Focus for iOS version 126 or later are mitigated from CVE-2024-5022.