CVE-2016-9062 describes a privacy vulnerability in Firefox for Android versions prior to 50. When private browsing mode is exited, metadata such as URLs for visited sites are retained in the "browser.db" and "browser.db-wal" files within the Firefox profile. This is a low-severity issue (CVSS 3.3) with local attack vector and low complexity, potentially leading to information disclosure (C:L). There is no evidence of active exploitation, and no public exploit code is available, with minimal community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 50.0CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:* | ||
< 50CPE match | cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.