Firefox for iOS security bypass flaw patched
A Firefox for iOS vulnerability lets attackers bypass security policy protections; users should update to version 152.3 or later.
CERT-FR issued an advisory regarding a security policy bypass vulnerability in Mozilla Firefox for iOS, affecting all versions prior to 152.3. The flaw is documented in Mozilla's security bulletin MFSA2026-65, published July 5, 2026, and tracked as CVE-2026-13356.
No evidence of active exploitation is mentioned in the advisory. Users and administrators are advised to update to the patched version as referenced in Mozilla's official security bulletin.
Mentioned in this report
Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0839
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free