CVE-2024-10474 PUBLISHED CVSS 6.5 MEDIUM

Focus was incorrectly allowing internal links to utilize the app scheme used for deeplinking, which could result in links potentially circumventing some URL safety checks This vulnerability affects Focus for iOS < 132.

EPSS 0.30% · 52.9th percentile

Risk Scores

CVSS v3.1
6.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
EPSS Score
0.30%
52.9th percentile

Affected Products

VendorProductVersions
MozillaFocus for iOSunspecified
mozillafirefox_focus0
mozillafocus_for_ios0

Timeline

References

Open in Interactive Console →