OCTOBER 5, 2026
Live Feed
Back to database
Case File

CVE-2026-100823

MEDIUM · CVSS 5.4 EPSS 0.16%

Source: NVD + CISA KEV + EPSS · Published 2026-09-29 · Last synced 2026-10-05

CyberRota Analysis

AI-Generated

A spoofing vulnerability in the Downloads component of Firefox for Android could allow attackers to manipulate download behaviors, potentially leading to unauthorized access or data exposure. Users of Firefox on Android should prioritize updating to version 157 or later to mitigate this risk. Organizations relying on Firefox for Android in their mobile environments should also ensure their users are aware of this update to maintain security.

CVE
CVE-2026-100823
Severity
MEDIUM
CVSS
5.4
EPSS
0.16%
Android Firefox

Original NVD Description

Spoofing issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Firefox 157.

Related CVEs

Other vulnerabilities affecting the same vendor(s)