Vulnerability Details CVE-2021-23977
Firefox for Android suffered from a time-of-check-time-of-use vulnerability that allowed a malicious application to read sensitive data from application directories. Note: This issue is only affected Firefox for Android. Other operating systems are unaffected. This vulnerability affects Firefox < 86.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 58.2%
CVSS Severity
CVSS v3 Score 5.3
CVSS v2 Score 2.6
Products affected by CVE-2021-23977
-
cpe:2.3:a:mozilla:firefox:80.0
-
cpe:2.3:a:mozilla:firefox:83.0
-
cpe:2.3:a:mozilla:firefox:84.0
-
cpe:2.3:a:mozilla:firefox:84.1.3