# Firefox for iOS security bypass flaw patched

Published: 2026-07-07 · Severity: low
Canonical: https://vorant.io/reports/bd61e367-1924-58f6-9f01-bf35a522c967/firefox-for-ios-security-bypass-flaw-patched

> A Firefox for iOS vulnerability lets attackers bypass security policy protections; users should update to version 152.3 or later.

CERT-FR issued an advisory regarding a security policy bypass vulnerability in Mozilla Firefox for iOS, affecting all versions prior to 152.3. The flaw is documented in Mozilla's security bulletin MFSA2026-65, published July 5, 2026, and tracked as CVE-2026-13356.

No evidence of active exploitation is mentioned in the advisory. Users and administrators are advised to update to the patched version as referenced in Mozilla's official security bulletin.

## Mentioned in this report

- Vulnerabilities: CVE-2026-13356

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0839

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/bd61e367-1924-58f6-9f01-bf35a522c967/firefox-for-ios-security-bypass-flaw-patched.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
