SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-86853

MEDIUM · CVSS 4.3 EPSS 0.17%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Firefox for iOS is vulnerable to a flaw that allows a malicious webpage to exploit external URL schemes, potentially leading to repeated system prompts or the launch of external applications. This can result in a temporary denial of service, rendering the browser unusable until the offending page is closed. Users and administrators of Firefox for iOS should prioritize updating to version 155.1 to mitigate this issue.

CVE
CVE-2026-86853
Severity
MEDIUM
CVSS
4.3
EPSS
0.17%
Firefox

Original NVD Description

A malicious webpage could repeatedly trigger external URL schemes, causing system prompts or external application launches. This could make Firefox for iOS temporarily unusable until the page is closed. This vulnerability was fixed in Firefox for iOS 155.1.