ZeroHour

CVE-2025-10290

CVSS 3.1
6.5 medium
EPSS
<1%p17
Published
()
Modified
Description

Opening links via the contextual menu in Focus iOS for certain URL schemes would fail to load but would not refresh the toolbar correctly, allowing attackers to spoof websites if users were coerced into opening a link explicitly through a long-press. This vulnerability was fixed in Focus for iOS 143.0.

Vendors
mozilla
Products
firefox focus
Weakness
CWE-451
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.