ZeroHour

CVE-2026-2800

CVSS 3.1
9.8 critical
EPSS
<1%p23
Published
()
Modified
Description

Spoofing issue in the WebAuthn component in Firefox for Android. This vulnerability was fixed in Firefox 148 and Thunderbird 148.

Vendors
mozilla
Products
firefox, thunderbird
Weakness
CWE-290
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.