Home Any version before 146
affected
Any version before 115.31
affected
Any version before 140.6
affected
Any version before 146
affected
Any version before 140.6
affected
Description
Same-origin policy bypass in the Request Handling component. This vulnerability affects Firefox < 146, Firefox ESR < 115.31, Firefox ESR < 140.6, Thunderbird < 146, and Thunderbird < 140.6.
Product status
Credits
Igor Morgenstern
References
bugzilla.mozilla.org/show_bug.cgi?id=2000218
www.mozilla.org/security/advisories/mfsa2025-92/
www.mozilla.org/security/advisories/mfsa2025-93/
www.mozilla.org/security/advisories/mfsa2025-94/
www.mozilla.org/security/advisories/mfsa2025-95/
www.mozilla.org/security/advisories/mfsa2025-96/