Aller au contenu

Fiche vulnérabilité

CVE-2021-29973 : faille élevée mozilla firefox (CVSS 8.8)

Description

Password autofill was enabled without user interaction on insecure websites on Firefox for Android. This was corrected to require user interaction with the page before a user's password would be entered by the browser's autofill functionality *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 90.

En bref

Sévérité
Élevée (CVSS 8.8)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
5 août 2021
Dernière mise à jour
17 juin 2026

Produits concernés

  • mozilla firefox

Références

Rechercher une autre vulnérabilité dans la base CVE