PT-2026-49700 · Mozilla · Firefox For Ios
Muneaki Nishimura
·
Published
2026-06-16
·
Updated
2026-06-16
·
CVE-2026-53899
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Firefox for iOS used partial domain matching when attaching cookies to PDF requests, allowing a malicious site on a suffix domain to receive cookies belonging to the target site. This vulnerability was fixed in Firefox for iOS 152.0.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Firefox For Ios