logo

Multiple Vulnerabilities in Mozilla Products Could Allow for Arbitrary Code Execution

ID: 6b3ab7f8-7f5f-5eb1-868a-b2ef9dd9b096

STIX ID: report--6b3ab7f8-7f5f-5eb1-868a-b2ef9dd9b096

Feed Name: CISecurity.org Advisories

Threat Score
75/100

Date Published: 2025-10-16

Date Updated: 2026-04-27

...
...

Multiple memory-safety and related vulnerabilities were disclosed in Mozilla products (Firefox, Firefox ESR, Thunderbird), including use-after-free, out-of-bounds read/write, IPC information leaks, and other flaws (CVE-2025-11708–CVE-2025-11721). The most severe issues could enable arbitrary code execution via drive-by compromise; users should apply the listed security updates (Firefox ESR 115.29 / 140.4, Firefox 144, Thunderbird 144, etc.) to mitigate risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.