User Interface Vulnerability in Firefox and Firefox Focus for Android
CVE-2025-11720
What is CVE-2025-11720?
A user interface vulnerability in Firefox and Firefox Focus on Android allows attackers to exploit the custom tab feature. The issue arises as the UI displays only the site that is loaded, potentially leading users to be misled about the origin of content. This could enable an attacker to trick the user into believing they are interacting with a legitimate subdomain when, in fact, they are not. As a result, sensitive information could be exposed to unauthorized parties, emphasizing the need for users to remain vigilant when accessing content from various domains.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Firefox < 144
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved