AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-12404

MEDIUM · CVSS 4.3 EPSS 0.78%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-07-09 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2020-12404
Severity
MEDIUM
CVSS
4.3
EPSS
0.78%
Firefox

Original NVD Description

For native-to-JS bridging the app requires a unique token to be passed that ensures non-app code can't call the bridging functions. That token could leak when used for downloading files. This vulnerability affects Firefox for iOS < 26.