CVE-2024-38313: Mozilla Firefox Mobile

Medium severity, CVSS 4.3. EPSS: 0.2% chance of exploitation in the next 30 days.

In certain scenarios a malicious website could attempt to display a fake location URL bar which could mislead users as to the actual website address This vulnerability affects Firefox for iOS < 127.

Affected products

  • Mozilla Firefox Mobile: before 127.0 (fixed in 127.0)

Published 2024-06-13. Last modified 2026-08-19.