Thu Apr 18 2024 14:44:11 PDT
  • Resolution: ---
  • Classification: Client Software, Components
  • Product: Fenix, Focus, GeckoView
  • OS: Android
  • Whiteboard: [fenix, [geckoview
  • Component: (is not equal to) Security: iOS
  • Group: Security-Sensitive Mobile Client Bug
  • Keywords: sec-
  • Keywords: (contains none of the strings) sec-critical, sec-high, sec-moderate

10 bugs found.
ID Type Summary Product Comp Assignee Status Resolution Updated
1699458 tabs.get() API allows distinguishing private and non-existent tabs WebExtensions Android nobody NEW --- 2023-02-20
1810665 Use proper templating in our error pages Fenix Browser Engine nobody NEW --- 2023-01-26
1445758 Focus does not show the top level domain +1 in the address bar Focus General nobody NEW --- 2023-01-26
1631073 401 password prompt spoofing thing Fenix General nobody NEW --- 2023-07-24
1684947 Disallow loading file:/// URIs from within the data folder GeckoView General nobody NEW --- 2023-10-24
1685152 Expose URI class GeckoView General nobody NEW --- 2023-06-05
1731181 Address bar, security windows show origin elided insecurely, allows URL spoofing Focus General nobody NEW --- 2023-06-05
1889942 HTML Injection in resource:// scheme on Fenix error pages Fenix General nobody NEW --- Wed 19:34
1656735 URL spoofing on Android with U+03XX (Combining Dots) Fenix Toolbar nobody NEW --- 2022-12-13
1868171 Excessive Input Form with scroll down can spoof hidden address bar Fenix Toolbar nobody NEW --- 2024-01-14
10 bugs found.