{"id":"CVE-2024-43111","title":"Long pressing on a download link could potentially allow Javascript commands to be executed within the browser This vulnerability affects Firefox for iOS < 129.","summary":"Long pressing on a download link could potentially allow Javascript commands to be executed within the browser This vulnerability affects Firefox for iOS < 129.","severity":"medium","cvss":6.1,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N","cwe":["CWE-79","CWE-79"],"vendor":"mozilla","product":"firefox_mobile","affected":["firefox_mobile < 129"],"patched":["firefox_mobile 129"],"published":"2024-08-06","updated":"2026-08-19","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2024-43111","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=1874907","label":"security@mozilla.org"},{"url":"https://www.mozilla.org/security/advisories/mfsa2024-36/","label":"security@mozilla.org"}],"tags":["nvd"],"epss":0.0027,"epssPercentile":0.19423,"ingestedAt":"2026-08-19T15:41:16.266Z","slug":"CVE-2024-43111","body":"## Overview\n\nLong pressing on a download link could potentially allow Javascript commands to be executed within the browser This vulnerability affects Firefox for iOS < 129.\n\n## Affected\n\n- `firefox_mobile < 129`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `firefox_mobile 129`","depth":"sunlit","depthScore":34,"depthScoreParts":{"impact":33.6,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}