MEDIUM
Cross-site scripting (XSS) vulnerability in the internationalization feature in the default homescreen app in Mozilla Firefox OS before 2.5 allows user-assisted remote attackers to inject arbitrary web script or HTML via a crafted web site that is mishandled during "Add to home screen" bookmarking
Published Jan 9, 2016
6.1
MEDIUMCVSS 3.0
EPSS 0.65%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.