CVE-2023-29534: Mozilla Firefox Focus
Critical severity, CVSS 9.1. EPSS: 0.7% chance of exploitation in the next 30 days.
Different techniques existed to obscure the fullscreen notification in Firefox and Focus for Android. These could have led to potential user confusion and spoofing attacks. *This bug only affects Firefox and Focus for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox for Android < 112 and Focus for Android < 112.
Affected products
- Mozilla Firefox Focus: before 112.0 (fixed in 112.0)
- Mozilla Firefox Mobile: before 112.0 (fixed in 112.0)
Published 2023-06-19. Last modified 2026-08-19.