

#CVE-2023-25751: Incorrect code generation during JIT compilation Reporter Lukas Bernhard Impact high Description Under certain circumstances, a ServiceWorker's offline cache may have leaked to the file system when using private browsing mode. #CVE-2023-25750: Potential ServiceWorker cache leak during private browsing mode Reporter Kagami Rosylight Impact high Description

Other versions of Firefox are unaffected. This bug only affects Firefox for Android. Firefox will now confirm with users that they want to launch an external application before doing so. #CVE-2023-25749: Firefox for Android may have opened third-party apps without a prompt Reporter Kirtikumar Anandrao Ramchandani Impact high DescriptionĪndroid applications with unpatched vulnerabilities can be launched from a browser using Intents, exposing users to these vulnerabilities. #CVE-2023-25748: Fullscreen Notification could have been hidden by window prompts on Android Reporter Hafiizh Impact high Descriptionīy displaying a prompt with a long description, the fullscreen notification could have been hidden, resulting in potential user confusion or spoofing attacks. The fullscreen notification could have been hidden on Firefox for Android by using download popups, resulting in potential user confusion or spoofing attacks.

#CVE-2023-28159: Fullscreen Notification could have been hidden by download popups on Android Reporter Axel Chong Impact high Description Mozilla Foundation Security Advisory 2023-09 Security Vulnerabilities fixed in Firefox 111 Announced MaImpact high Products Firefox Fixed in
