Address Bar Spoofing Vulnerability in F-Secure SAFE Browser for Android
Description
A vulnerability affecting F-Secure SAFE browser was discovered. A maliciously crafted website could make a phishing attack with address bar spoofing as the address bar was not correct if navigation fails in a loop.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Address bar spoofing in F-Secure SAFE browser allows phishing via a malicious website causing navigation loop.
Vulnerability
A vulnerability in F-Secure SAFE browser allows address bar spoofing. When navigation fails in a loop, the address bar does not update correctly, enabling a malicious website to display a fake URL. Affected versions include the SAFE browser; specific version details are not disclosed in the available references [1].
Exploitation
An attacker needs to host a malicious website that triggers a navigation loop. The user must visit the crafted site; no additional authentication or privileges are required. The loop causes the address bar to display an incorrect (spoofed) URL.
Impact
Successful exploitation enables the attacker to perform a phishing attack. The user sees a fraudulent URL in the address bar, potentially leading to disclosure of sensitive information. The impact is limited to UI spoofing; no code execution or data theft beyond user interaction is indicated.
Mitigation
As of the publication date (2022-05-12), no fixed version is specified in the references. Users should refer to F-Secure's security advisories [1] for updates. Until a patch is available, caution is advised when visiting untrusted websites.
AI Insight generated on May 27, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
2- Range: unspecified
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- www.f-secure.com/en/home/support/security-advisoriesmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.