CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.5. It affects Android, Firefox.
CVE
CVE-2025-11716
Severity
MEDIUM
CVSS
6.5
EPSS
0.22%
Android Firefox
Original NVD Description
Links in a sandboxed iframe could open an external app on Android without the required "allow-" permission. This vulnerability was fixed in Firefox 144 and Thunderbird 144.
Related CVEs
Other vulnerabilities affecting the same vendor(s)