5.4

CVSS3.1

CVE-2025-54144 - Internal Firefox open-text URL scheme allowed loading of arbitrary URLs

The URL scheme used by Firefox to facilitate searching of text queries could incorrectly allow attackers to open arbitrary website URLs or internal pages if a user was tricked into clicking a link. This vulnerability was fixed in Firefox for iOS 141.

πŸ“… Published: Aug. 19, 2025, 8:52 p.m. πŸ”„ Last Modified: April 20, 2026, 5 p.m.

9.8

CVSS3.1

CVE-2025-54143 - Sandboxed iframes could allow local downloads despite sandbox restrictions

Sandboxed iframes on webpages could potentially allow downloads to the device, bypassing the expected sandbox restrictions declared on the parent page. This vulnerability was fixed in Firefox for iOS 141.

πŸ“… Published: Aug. 19, 2025, 8:52 p.m. πŸ”„ Last Modified: April 20, 2026, 8 p.m.

4.3

CVSS3.1

CVE-2025-8364 - Address bar spoofing using an blob URI on Firefox for Android

A crafted URL using a blob: URI could have hidden the true origin of the page, resulting in a potential spoofing attack. *Note: This issue only affected Android operating systems. Other operating systems are unaffected.*. This vulnerability was fixed in Firefox 141.

πŸ“… Published: Aug. 19, 2025, 8:52 p.m. πŸ”„ Last Modified: April 20, 2026, 5 p.m.

9.8

CVSS3.1

CVE-2025-8042 - Sandboxed iframe could start downloads

Firefox for Android allowed a sandboxed iframe without the `allow-downloads` attribute to start downloads. This vulnerability was fixed in Firefox 141.

πŸ“… Published: Aug. 19, 2025, 8:52 p.m. πŸ”„ Last Modified: April 20, 2026, 5 p.m.

5.3

CVSS3.1

CVE-2025-8041 - Incorrect URL truncation in Firefox for Android

In the address bar, Firefox for Android truncated the display of URLs from the end instead of prioritizing the origin. This vulnerability was fixed in Firefox 141.

πŸ“… Published: Aug. 19, 2025, 8:52 p.m. πŸ”„ Last Modified: April 20, 2026, 6:15 p.m.

8.1

CVSS3.1

CVE-2025-9184 - Memory safety bugs fixed in Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox 142 and Thunderbird 1…

Memory safety bugs present in Firefox ESR 140.1, Thunderbird ESR 140.1, Firefox 141 and Thunderbird 141. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Fire…

πŸ“… Published: Aug. 19, 2025, 8:33 p.m. πŸ”„ Last Modified: April 20, 2026, 5 p.m.

6.5

CVSS3.1

CVE-2025-9183 - Spoofing issue in the Address Bar component

Spoofing issue in the Address Bar component. This vulnerability was fixed in Firefox 142 and Firefox ESR 140.2.

πŸ“… Published: Aug. 19, 2025, 8:33 p.m. πŸ”„ Last Modified: April 20, 2026, 5 p.m.

9.8

CVSS3.1

CVE-2025-9187 - Memory safety bugs fixed in Firefox 142 and Thunderbird 142

Memory safety bugs present in Firefox 141 and Thunderbird 141. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 142 and Thunderbird 142.

πŸ“… Published: Aug. 19, 2025, 8:33 p.m. πŸ”„ Last Modified: April 20, 2026, 6:15 p.m.

6.5

CVSS3.1

CVE-2025-9186 - Spoofing issue in the Address Bar component of Firefox Focus for Android

Spoofing issue in the Address Bar component of Firefox Focus for Android. This vulnerability was fixed in Firefox 142.

πŸ“… Published: Aug. 19, 2025, 8:33 p.m. πŸ”„ Last Modified: April 20, 2026, 5 p.m.

7.5

CVSS3.1

CVE-2025-9182 - Denial-of-service due to out-of-memory in the Graphics: WebRender component

Denial-of-service due to out-of-memory in the Graphics: WebRender component. This vulnerability was fixed in Firefox 142, Firefox ESR 140.2, Thunderbird 142, and Thunderbird 140.2.

πŸ“… Published: Aug. 19, 2025, 8:33 p.m. πŸ”„ Last Modified: April 20, 2026, 5 p.m.
Total resulsts: 349182
Page 4220 of 34,919
Β« previous page Β» next page
Filters