vulnerability
Alpine Linux: CVE-2020-26955: Reliance on Cookies without Validation and Integrity Checking
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 4 | (AV:N/AC:M/Au:N/C:N/I:P/A:N) | Dec 9, 2020 | Aug 22, 2024 | Dec 22, 2025 |
Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Dec 9, 2020
Added
Aug 22, 2024
Modified
Dec 22, 2025
Description
When a user downloaded a file in Firefox for Android, if a cookie is set, it would have been re-sent during a subsequent file download operation on the same domain, regardless of whether the original and subsequent request were in private and non-private browsing modes. *Note: This issue only affected Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 83.
Solutions
alpine-linux-upgrade-firefoxalpine-linux-upgrade-librewolf
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.