Sandboxed iframes on webpages could potentially allow downloads to the device, bypassing the expected sandbox restrictions declared on the parent page. This vulnerability was fixed in Firefox for iOS 141.
References
| Link | Resource |
|---|---|
| https://bugzilla.mozilla.org/show_bug.cgi?id=1912671 | Issue Tracking Permissions Required |
| https://www.mozilla.org/security/advisories/mfsa2025-60/ | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2025-08-19 21:15
Updated : 2026-06-17 09:39
NVD link : CVE-2025-54143
Mitre link : CVE-2025-54143
CVE.ORG link : CVE-2025-54143
JSON object : View
Products Affected
mozilla
- firefox
CWE
CWE-693
Protection Mechanism Failure
