PT-2026-49700 · Mozilla · Firefox For Ios

Muneaki Nishimura

·

Published

2026-06-16

·

Updated

2026-06-16

·

CVE-2026-53899

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Firefox for iOS used partial domain matching when attaching cookies to PDF requests, allowing a malicious site on a suffix domain to receive cookies belonging to the target site. This vulnerability was fixed in Firefox for iOS 152.0.

Related Identifiers

CVE-2026-53899

Affected Products

Firefox For Ios