Vulnerability Details CVE-2023-49060
An attacker could have accessed internal pages or data by ex-filtrating a security key from ReaderMode via the `referrerpolicy` attribute. This vulnerability affects Firefox for iOS < 120.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 47.8%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2023-49060
-
cpe:2.3:a:mozilla:firefox_mobile:-
-
cpe:2.3:a:mozilla:firefox_mobile:102.0
-
cpe:2.3:a:mozilla:firefox_mobile:119.0
-
cpe:2.3:a:mozilla:firefox_mobile:14.0
-
cpe:2.3:a:mozilla:firefox_mobile:15.0
-
cpe:2.3:a:mozilla:firefox_mobile:15.1
-
cpe:2.3:a:mozilla:firefox_mobile:16.0
-
cpe:2.3:a:mozilla:firefox_mobile:16.1
-
cpe:2.3:a:mozilla:firefox_mobile:16.2
-
cpe:2.3:a:mozilla:firefox_mobile:17.0
-
cpe:2.3:a:mozilla:firefox_mobile:17.1
-
cpe:2.3:a:mozilla:firefox_mobile:17.2
-
cpe:2.3:a:mozilla:firefox_mobile:17.3
-
cpe:2.3:a:mozilla:firefox_mobile:18.0
-
cpe:2.3:a:mozilla:firefox_mobile:18.1
-
cpe:2.3:a:mozilla:firefox_mobile:18.2
-
cpe:2.3:a:mozilla:firefox_mobile:19.0
-
cpe:2.3:a:mozilla:firefox_mobile:19.1
-
cpe:2.3:a:mozilla:firefox_mobile:20.0
-
cpe:2.3:a:mozilla:firefox_mobile:20.1
-
cpe:2.3:a:mozilla:firefox_mobile:20.2
-
cpe:2.3:a:mozilla:firefox_mobile:21.0
-
cpe:2.3:a:mozilla:firefox_mobile:22.0
-
cpe:2.3:a:mozilla:firefox_mobile:23.0
-
cpe:2.3:a:mozilla:firefox_mobile:24.0
-
cpe:2.3:a:mozilla:firefox_mobile:24.1
-
cpe:2.3:a:mozilla:firefox_mobile:25.0
-
cpe:2.3:a:mozilla:firefox_mobile:25.1
-
cpe:2.3:a:mozilla:firefox_mobile:26.0
-
cpe:2.3:a:mozilla:firefox_mobile:27.0
-
cpe:2.3:a:mozilla:firefox_mobile:28.0