#VU122996 Spoofing attack in Firefox for iOS - CVE-2026-2032
Published: February 17, 2026
Firefox for iOS
Mozilla
Description
The vulnerability allows a remote attacker to perform spoofing attack.
The vulnerability exists due to incorrect processing of user-supplied data caused by desynchronization between the address bar and page content. A remote attacker can trick the victim into visiting a specially crafted website and spoof page content under a trusted domain name.