Firefox Android allowed immediate interaction with permission prompts. This could be used for tapjacking. This vulnerability affects Firefox < 128.
A product defines a set of insecure permissions that are inherited by objects that are created by the program.
Link | Tags |
---|---|
https://bugzilla.mozilla.org/show_bug.cgi?id=1836786 | issue tracking |
https://www.mozilla.org/security/advisories/mfsa2024-29/ | vendor advisory |