Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-81267

MEDIUM NVD
CVSS Score 5.4
Severity MEDIUM
Published Aug 31, 2026
Vendor unknown

Description

A malicious webpage could stall a popup's cross-origin navigation after commit, causing the address bar to display the destination origin while continuing to render attacker-controlled content. This vulnerability was fixed in Firefox for iOS 155.0.

References