vulnerability
MFSA2025-19 Firefox: Security Vulnerability fixed in Firefox 136.0.4, Firefox ESR 128.8.1, Firefox ESR 115.21.1 (CVE-2025-2783)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 8 | (AV:N/AC:H/Au:N/C:C/I:C/A:C) | Mar 27, 2025 | Mar 28, 2025 | Mar 31, 2025 |
Severity
8
CVSS
(AV:N/AC:H/Au:N/C:C/I:C/A:C)
Published
Mar 27, 2025
Added
Mar 28, 2025
Modified
Mar 31, 2025
Description
Incorrect handle provided in unspecified circumstances in Mojo in Google Chrome on Windows prior to 134.0.6998.177 allowed a remote attacker to perform a sandbox escape via a malicious file. (Chromium security severity: High)
Solutions
mozilla-firefox-esr-upgrade-115_21_1mozilla-firefox-esr-upgrade-128_8_1mozilla-firefox-upgrade-136_0_4
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.