Sploitus

CVE-2024-0605

No indexed exploits for CVE-2024-0605 yet

Using a javascript: URI with a setTimeout race condition, an attacker can execute unauthorized scripts on top origin sites in urlbar. This bypasses security measures, potentially leading to arbitrary code execution or unauthorized actions within the user's loaded webpage. This vulnerability affects Focus for iOS < 122.

Affected products
Focus
Mozilla Firefox Focus
< 122.0
Fix
Available
CVSS 3.1
7.5 HIGH
EPSS
0.4% (31th percentile)
Weakness
CWE-362
NVD status
Modified
Published
2024-01-22
CVE-2024-0605 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2024-0605 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2024-0605 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.