Pages with malicious titles could potentially allow saved PDF content to overwrite PDF files or bundled content within the Firefox for iOS application sandbox. This vulnerability was fixed in Firefox for iOS 152.4.
References
| Link | Resource |
|---|---|
| https://bugzilla.mozilla.org/show_bug.cgi?id=2045842 | Permissions Required |
| https://www.mozilla.org/security/advisories/mfsa2026-66/ | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-07-13 19:16
Updated : 2026-07-14 18:31
NVD link : CVE-2026-14906
Mitre link : CVE-2026-14906
CVE.ORG link : CVE-2026-14906
JSON object : View
Products Affected
mozilla
- firefox_mobile
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
