#VU113155 Protection Mechanism Failure in Firefox for iOS - CVE-2025-54143

 

#VU113155 Protection Mechanism Failure in Firefox for iOS - CVE-2025-54143

Published: July 22, 2025


Vulnerability identifier: #VU113155
Vulnerability risk: Medium
CVSSv4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:U/U:Green
CVE-ID: CVE-2025-54143
CWE-ID: CWE-693
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vulnerable software:
Firefox for iOS
Software vendor:
Mozilla

Description

The vulnerability allows a remote attacker to bypass implemented security restrictions.

The vulnerability exists due to insufficient implementation of security measures. Sandboxed iframes on webpages could potentially allow downloads to the device, bypassing the expected sandbox restrictions declared on the parent page


Remediation

Install updates from vendor's website.

External links