Related Vulnerabilities: CVE-2021-29973  

Password autofill was enabled without user interaction on insecure websites on Firefox for Android. This was corrected to require user interaction with the page before a user's password would be entered by the browser's autofill functionality. This bug only affects Firefox for Android. Other operating systems are unaffected.

Severity Medium

Remote Yes

Type Information disclosure

Description

Password autofill was enabled without user interaction on insecure websites on Firefox for Android. This was corrected to require user interaction with the page before a user's password would be entered by the browser's autofill functionality.

This bug only affects Firefox for Android. Other operating systems are unaffected.

AVG-2149 firefox 89.0.2-1 90.0-1 High Not affected

https://www.mozilla.org/security/advisories/mfsa2021-28/
https://bugzilla.mozilla.org/show_bug.cgi?id=1701932