hfh86

2 exploits Active since Dec 2021
CVE-2021-43530 NOMISEC MEDIUM WRITEUP
Firefox for Android < 94.0 - Universal Cross-Site Scripting via QR Code URL Processing
A Universal XSS vulnerability was present in Firefox for Android resulting from improper sanitization when processing a URL scanned from a QR code. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 94.
1 stars
CVSS 6.1
CVE-2022-3317 NOMISEC MEDIUM
Google Chrome <106.0.5249.62 - CSRF
Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 106.0.5249.62 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Low)
CVSS 4.3