VYPR
Critical severity9.8NVD Advisory· Published Aug 19, 2025· Updated Apr 13, 2026

CVE-2025-54143

CVE-2025-54143

Description

Sandboxed iframes on webpages could potentially allow downloads to the device, bypassing the expected sandbox restrictions declared on the parent page. This vulnerability was fixed in Firefox for iOS 141.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.