Mozilla Firefox and Thunderbird Spoofing Vulnerability in WebAuthn Component

Vulnerability

A spoofing vulnerability has been identified in the WebAuthn component of Firefox and Thunderbird, affecting versions prior to 143. This vulnerability could potentially be exploited to mislead users or applications regarding authentication or identity verification.

Impact

Exploitation of this vulnerability could lead to spoofing, allowing an attacker to impersonate a user or device in authentication processes.

Remediation

Users can upgrade to Firefox 143 or Thunderbird 143 to address this vulnerability.

Added: Sep 16, 2025, 4:27 PM
Updated: Sep 16, 2025, 4:27 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
4.4
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.