CVE-2021-23957

Publication date

2021-02-26 02:08:50

Family

mozilla

State

PUBLISHED

Description

Navigations through the Android-specific `intent` URL scheme could have been misused to escape iframe sandbox. Note: This issue only affected Firefox for Android. Other operating systems are unaffected. This vulnerability affects Firefox < 85.