CVE-2024-4766: Mozilla Firefox
Medium severity, CVSS 4.3. EPSS: 0.4% chance of exploitation in the next 30 days.
Different techniques existed to obscure the fullscreen notification in Firefox for Android. These could have led to potential user confusion and spoofing attacks. *This bug only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox < 126.
Affected products
- Mozilla Firefox: before 126.0 (fixed in 126.0)
Published 2024-05-14. Last modified 2026-06-17.