Firefox before 1.0.1 allows remote attackers to spoof the (1) security and (2) download modal dialog boxes, which could be used to trick users into executing script or downloading and executing a file, aka "Firespoofing."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.024
EPSS Ranking 84.5%