Due to insufficient escaping of the ampersand character in the “Copy as cURL” feature, an attacker could trick a user into using this command, potentially leading to local code execution on the user's system. *This bug only affects Firefox for Windows. Other versions of Firefox are unaffected.*. This vulnerability was fixed in Firefox 139, Firefox ESR 115.24, Firefox ESR 128.11, Thunderbird 139, and Thunderbird 128.11.
CVSS Details
- CVSS 3.1 Base Score: 4.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon Linux Ami 2 | — | Upgrade firefox-debuginfoUpgrade firefoxUpgrade thunderbirdUpgrade thunderbird-debuginfo | Jun 12, 2025 | May 27, 2025 |
| Amazon_linux_2023 | — | Upgrade firefox-debuginfoUpgrade firefox-debugsourceUpgrade firefox | Jun 11, 2025 | May 27, 2025 |
| Mfsa2025 42 | — | Upgrade to Mozilla Firefox version 139.0Upgrade to the latest version of Mozilla Firefox | May 28, 2025 | May 27, 2025 |
| Mfsa2025 43 | — | Upgrade to the latest version of Mozilla FirefoxUpgrade to Mozilla Firefox ESR version 115.24 | May 28, 2025 | May 27, 2025 |
| Mfsa2025 44 | — | Upgrade to Mozilla Firefox ESR version 128.11Upgrade to the latest version of Mozilla Firefox | May 28, 2025 | May 27, 2025 |
| Mozilla Thunderbird | — | Upgrade to Mozilla Thunderbird version 128.11Upgrade to the latest version of Mozilla Thunderbird | May 28, 2025 | May 27, 2025 |
| Suse | — | Upgrade MozillaFirefox-develUpgrade MozillaFirefoxUpgrade MozillaFirefox-translations-otherUpgrade mozjs128Upgrade MozillaThunderbirdUpgrade MozillaThunderbird-translations-commonUpgrade mozillafirefox-branding-upstreamUpgrade MozillaFirefox-translations-commonUpgrade libmozjs-128-0Upgrade MozillaThunderbird-translations-otherUpgrade mozjs128-devel | Jun 3, 2025 | May 27, 2025 |
| Ubuntu | — | Upgrade thunderbird | Jun 26, 2025 | May 27, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub