Mozilla Firefox and Thunderbird Site Permissions Spoofing Vulnerability

Vulnerability

A spoofing vulnerability has been identified in the Site Permissions component of Firefox versions prior to 143 and Thunderbird versions prior to 143. This vulnerability allows for misleading representation or manipulation of site permission settings.

Impact

Exploitation of this vulnerability could lead to incorrect or misleading site permission representations, potentially allowing websites to behave as if they have permissions they do not actually possess.

Remediation

Users can upgrade to Firefox 143 or Thunderbird 143 to address this vulnerability.

Added: Sep 16, 2025, 5:17 PM
Updated: Sep 16, 2025, 5:17 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
4.4
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.