CVE-2023-29538

Publication date

2023-06-02 00:00:00

Family

mozilla

State

PUBLISHED

Description

Under specific circumstances a WebExtension may have received a jar:file:/// URI instead of a moz-extension:/// URI during a load request. This leaked directory paths on the users machine. This vulnerability affects Firefox for Android < 112, Firefox < 112, and Focus for Android < 112.