logo

CERT-In Warns of High-Severity Vulnerabilities in Mozilla Firefox and Thunderbird

ID: 0a97d09d-af04-585f-bbef-abe67c22b05e

STIX ID: report--0a97d09d-af04-585f-bbef-abe67c22b05e

Feed Name: The Cyber Express

Threat Score
70/100

Date Published: 2025-02-10

Date Updated: 2026-04-23

Author: Ashish Khaitan

...
...

CERT-In advisory CIVN-2025-0016 details multiple high-severity vulnerabilities in Mozilla Firefox and Thunderbird (e.g., use-after-free, memory-safety bugs, WebAssembly and PKCS#7 issues, and email sender spoofing) affecting Firefox <135, Firefox ESR <115.20/128.7, Thunderbird <135 and Thunderbird ESR <128.7; these flaws could enable remote code execution, spoofing, data disclosure, or DoS, and Mozilla has released updates (Firefox 135, ESR 115.20/128.7, Thunderbird 135/ESR 128.7) which should be applied promptly.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.