Mozilla Firefox before 16.0 on Android assigns chrome privileges to Reader Mode pages, which allows user-assisted remote attackers to bypass intended access restrictions via a crafted web site.
CVSS Details
- CVSS 3.1 Base Score: 4.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Freebsd | — | Upgrade seamonkeyUpgrade libxulUpgrade firefoxUpgrade thunderbirdUpgrade linux-firefoxUpgrade linux-seamonkeyUpgrade linux-thunderbird | Dec 10, 2025 | Oct 10, 2012 |
| Mfsa2012 78 | — | Upgrade to the latest version of Mozilla FirefoxUpgrade to Mozilla Firefox version 16.0 | Oct 16, 2012 | Oct 10, 2012 |
| Suse | — | Upgrade MozillaFirefox-branding-SLEDUpgrade MozillaFirefox-translationsUpgrade MozillaFirefox | Feb 17, 2015 | Jun 28, 2013 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub