Описание
A web page could trick a user into setting that site as the default handler for a custom URL protocol. This vulnerability affects Firefox < 136 and Firefox ESR < 128.8.
A web page could trick a user into setting that site as the default handler for a custom URL protocol. This vulnerability affects Firefox < 136 and Firefox ESR < 128.8.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2025-1935
- https://bugzilla.mozilla.org/show_bug.cgi?id=1866661
- https://www.mozilla.org/security/advisories/mfsa2025-14
- https://www.mozilla.org/security/advisories/mfsa2025-16
- https://www.mozilla.org/security/advisories/mfsa2025-17
- https://www.mozilla.org/security/advisories/mfsa2025-18
Связанные уязвимости
A web page could trick a user into setting that site as the default handler for a custom URL protocol. This vulnerability affects Firefox < 136, Firefox ESR < 128.8, Thunderbird < 136, and Thunderbird < 128.8.
A web page could trick a user into setting that site as the default handler for a custom URL protocol. This vulnerability affects Firefox < 136, Firefox ESR < 128.8, Thunderbird < 136, and Thunderbird < 128.8.
A web page could trick a user into setting that site as the default handler for a custom URL protocol. This vulnerability affects Firefox < 136, Firefox ESR < 128.8, Thunderbird < 136, and Thunderbird < 128.8.
A web page could trick a user into setting that site as the default ha ...
Уязвимость браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, Thunderbird ESR, связанная с ошибками представления информации пользовательским интерфейсом, позволяющая нарушителю оказать влияние на целостность защищаемой информации