{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-08-02T09:43:02.680","vulnerabilities":[{"cve":{"id":"CVE-2024-9391","sourceIdentifier":"security@mozilla.org","published":"2024-10-01T16:15:10.510","lastModified":"2026-06-17T08:24:28.410","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"A user who enables full-screen mode on a specially crafted web page could potentially be prevented from exiting full screen mode.  This may allow spoofing of other sites as the address bar is no longer visible.\n*This bug only affects Firefox Focus for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox < 131."},{"lang":"es","value":"A un usuario que habilite el modo de pantalla completa en una página web especialmente manipulada se le podría impedir salir del modo de pantalla completa. Esto podría permitir la suplantación de identidad de otros sitios, ya que la barra de direcciones ya no estará visible. *Este error solo afecta a Firefox Focus para Android. Las demás versiones de Firefox no se ven afectadas.* Esta vulnerabilidad afecta a Firefox &lt; 131."}],"affected":[{"source":"security@mozilla.org","affectedData":[{"vendor":"Mozilla","product":"Firefox","versions":[{"version":"unspecified","lessThan":"131","versionType":"custom","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N","baseScore":6.5,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":2.5}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2024-10-01T18:56:22.360719Z","id":"CVE-2024-9391","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","type":"Secondary","description":[{"lang":"en","value":"CWE-290"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*","versionEndExcluding":"131.0","matchCriteriaId":"DA47FFCA-3451-462C-8FFB-47143C65E65A"}]}]}],"references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=1892407","source":"security@mozilla.org","tags":["Issue Tracking"]},{"url":"https://www.mozilla.org/security/advisories/mfsa2024-46/","source":"security@mozilla.org","tags":["Vendor Advisory"]}]}}]}