CVE-2025-0246
When using an invalid protocol scheme, an attacker could spoof the address bar.
*Note: This issue only affected Android
When using an invalid protocol scheme, an attacker could spoof the address bar. Note: This issue only affected Android operating systems. Other operating systems are unaffected. *Note: This issue is a different issue from CVE-2025-0244. This vulnerability was fixed in Firefox 134.
MEDIUM · CVSS 6.5
EPSS 0.00185
Monitor
- No active-exploitation, high-EPSS, or public-exploit signals - routine patching cadence
Sigma rules1
YARA rules0