CVE-2024-53976

Under certain circumstances, navigating to a webpage would result in the address missing from the location URL bar, making it unclear what the URL was for the loaded webpage. This vulnerability affects Firefox for iOS < 133.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:mozilla:firefox:*:*:*:*:*:iphone_os:*:*

History

04 Apr 2025, 16:15

Type Values Removed Values Added
CPE cpe:2.3:a:mozilla:firefox:*:*:*:*:*:iphone_os:*:*
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1905749 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1905749 - Issue Tracking, Permissions Required
References () https://www.mozilla.org/security/advisories/mfsa2024-66/ - () https://www.mozilla.org/security/advisories/mfsa2024-66/ - Vendor Advisory
Summary
  • (es) En determinadas circunstancias, al navegar a una página web, la dirección no aparecía en la barra de direcciones URL, por lo que no quedaba claro cuál era la URL de la página web cargada. Esta vulnerabilidad afecta a Firefox para iOS &lt; 133.
First Time Mozilla
Mozilla firefox
CPE cpe:2.3:a:mozilla:firefox:*:*:*:*:*:iphone_os:*:*
First Time Mozilla
Mozilla firefox
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1905749 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1905749 - Issue Tracking, Permissions Required
References () https://www.mozilla.org/security/advisories/mfsa2024-66/ - () https://www.mozilla.org/security/advisories/mfsa2024-66/ - Vendor Advisory

26 Nov 2024, 16:15

Type Values Removed Values Added
CPE cpe:2.3:a:mozilla:firefox:*:*:*:*:*:iphone_os:*:*
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1905749 - Issue Tracking, Permissions Required () https://bugzilla.mozilla.org/show_bug.cgi?id=1905749 -
References () https://www.mozilla.org/security/advisories/mfsa2024-66/ - Vendor Advisory () https://www.mozilla.org/security/advisories/mfsa2024-66/ -
New CVE

Information

Published : 2024-11-26 14:15

Updated : 2025-04-04 16:15


NVD link : CVE-2024-53976

Mitre link : CVE-2024-53976

CVE.ORG link : CVE-2024-53976


JSON object : View

Products Affected

mozilla

  • firefox
CWE
CWE-1021

Improper Restriction of Rendered UI Layers or Frames