Mozilla · Firefox For Android · CVE-2021-29965
**Name of the Vulnerable Software and Affected Versions**
Firefox for Android versions prior to 89
**Description**
The issue is related to how Firefox for Android handles HTTP Authentication dialogs. A malicious website could trigger an HTTP Authentication dialog, potentially causing the built-in password manager to suggest passwords for the wrong website. This could allow a remote attacker to access confidential data. The estimated number of potentially affected devices is not specified.
**Recommendations**
For Firefox for Android versions prior to 89, update to version 89 or later to resolve the issue. As a temporary workaround, consider avoiding the use of the built-in password manager for HTTP Authentication dialogs until the update is applied.