Exploit for CVE-2026-2634

Malicious scripts could cause desynchronization between the address bar and web content before a response is received in Firefox iOS, allowing attacker-controlled pages to be presented under spoofed domains. This vulnerability affects Firefox for iOS < 147.4.

Published: 2026-02-24

CVSS: 9.8

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Download Exploit for CVE-2026-2634 here:

Tip: Download official Tor Browser at https://www.torproject.org/download/ to access .onion links.

Check our portfolio:

https://veletacapital.com/exploit-424-cve-2025-68545/

https://veletacapital.com/exploit-202-cve-2026-2196/

https://veletacapital.com/exploit-353-cve-2025-70998/

https://veletacapital.com/exploit-118-cve-2026-2012/

https://veletacapital.com/exploit-304-cve-2026-26069/