Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 10

Количество 10

ubuntu логотип

CVE-2025-5265

около 1 года назад

Due to insufficient escaping of the ampersand character in the “Copy as cURL” feature, an attacker could trick a user into using this command, potentially leading to local code execution on the user's system. *This bug only affects Firefox for Windows. Other versions of Firefox are unaffected.*. This vulnerability was fixed in Firefox 139, Firefox ESR 115.24, Firefox ESR 128.11, Thunderbird 139, and Thunderbird 128.11.

CVSS3: 4.8
EPSS: Низкий
redhat логотип

CVE-2025-5265

около 1 года назад

Due to insufficient escaping of the ampersand character in the “Copy as cURL” feature, an attacker could trick a user into using this command, potentially leading to local code execution on the user's system. *This bug only affects Firefox for Windows. Other versions of Firefox are unaffected.*. This vulnerability was fixed in Firefox 139, Firefox ESR 115.24, Firefox ESR 128.11, Thunderbird 139, and Thunderbird 128.11.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2025-5265

около 1 года назад

Due to insufficient escaping of the ampersand character in the “Copy as cURL” feature, an attacker could trick a user into using this command, potentially leading to local code execution on the user's system. *This bug only affects Firefox for Windows. Other versions of Firefox are unaffected.*. This vulnerability was fixed in Firefox 139, Firefox ESR 115.24, Firefox ESR 128.11, Thunderbird 139, and Thunderbird 128.11.

CVSS3: 4.8
EPSS: Низкий
debian логотип

CVE-2025-5265

около 1 года назад

Due to insufficient escaping of the ampersand character in the \u201cC ...

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-fjj5-r59g-88g7

около 1 года назад

Due to insufficient escaping of the ampersand character in the “Copy as cURL” feature, an attacker could trick a user into using this command, potentially leading to local code execution on the user's system. *This bug only affects Firefox for Windows. Other versions of Firefox are unaffected.* This vulnerability affects Firefox < 139, Firefox ESR < 115.24, and Firefox ESR < 128.11.

CVSS3: 4.8
EPSS: Низкий
fstec логотип

BDU:2025-06221

около 1 года назад

Уязвимость функции Copy as cURL браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird операционных систем Windows, позволяющая нарушителю выполнить произвольный код

CVSS3: 4.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01814-1

около 1 года назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01769-1

около 1 года назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01946-1

около 1 года назад

Security update for MozillaThunderbird

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2025:20135-1

8 месяцев назад

Security update for mozjs128

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-5265

Due to insufficient escaping of the ampersand character in the “Copy as cURL” feature, an attacker could trick a user into using this command, potentially leading to local code execution on the user's system. *This bug only affects Firefox for Windows. Other versions of Firefox are unaffected.*. This vulnerability was fixed in Firefox 139, Firefox ESR 115.24, Firefox ESR 128.11, Thunderbird 139, and Thunderbird 128.11.

CVSS3: 4.8
0%
Низкий
около 1 года назад
redhat логотип
CVE-2025-5265

Due to insufficient escaping of the ampersand character in the “Copy as cURL” feature, an attacker could trick a user into using this command, potentially leading to local code execution on the user's system. *This bug only affects Firefox for Windows. Other versions of Firefox are unaffected.*. This vulnerability was fixed in Firefox 139, Firefox ESR 115.24, Firefox ESR 128.11, Thunderbird 139, and Thunderbird 128.11.

CVSS3: 6.1
0%
Низкий
около 1 года назад
nvd логотип
CVE-2025-5265

Due to insufficient escaping of the ampersand character in the “Copy as cURL” feature, an attacker could trick a user into using this command, potentially leading to local code execution on the user's system. *This bug only affects Firefox for Windows. Other versions of Firefox are unaffected.*. This vulnerability was fixed in Firefox 139, Firefox ESR 115.24, Firefox ESR 128.11, Thunderbird 139, and Thunderbird 128.11.

CVSS3: 4.8
0%
Низкий
около 1 года назад
debian логотип
CVE-2025-5265

Due to insufficient escaping of the ampersand character in the \u201cC ...

CVSS3: 4.8
0%
Низкий
около 1 года назад
github логотип
GHSA-fjj5-r59g-88g7

Due to insufficient escaping of the ampersand character in the “Copy as cURL” feature, an attacker could trick a user into using this command, potentially leading to local code execution on the user's system. *This bug only affects Firefox for Windows. Other versions of Firefox are unaffected.* This vulnerability affects Firefox < 139, Firefox ESR < 115.24, and Firefox ESR < 128.11.

CVSS3: 4.8
0%
Низкий
около 1 года назад
fstec логотип
BDU:2025-06221

Уязвимость функции Copy as cURL браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird операционных систем Windows, позволяющая нарушителю выполнить произвольный код

CVSS3: 4.8
0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01814-1

Security update for MozillaFirefox

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01769-1

Security update for MozillaFirefox

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01946-1

Security update for MozillaThunderbird

около 1 года назад
suse-cvrf логотип
openSUSE-SU-2025:20135-1

Security update for mozjs128

8 месяцев назад

Уязвимостей на страницу