Mozilla Firefox
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*
- < 135
A vulnerability exists in Firefox versions prior to 135 and Thunderbird versions prior to 135, where the fullscreen notification is unintentionally dismissed when fullscreen is quickly re-requested by the user. This behavior could be exploited to perform a spoofing attack.
Exploitation of this vulnerability could lead to a spoofing attack, where a user could be misled by the application's interface.
Users can upgrade to Firefox 135 or Thunderbird 135 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.