vulnerability

Alpine Linux: CVE-2020-26955: Reliance on Cookies without Validation and Integrity Checking

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Dec 9, 2020
Added
Aug 22, 2024
Modified
Dec 22, 2025

Description

When a user downloaded a file in Firefox for Android, if a cookie is set, it would have been re-sent during a subsequent file download operation on the same domain, regardless of whether the original and subsequent request were in private and non-private browsing modes. *Note: This issue only affected Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 83.

Solutions

alpine-linux-upgrade-firefoxalpine-linux-upgrade-librewolf
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.