Mozilla Firefox and Thunderbird Non-Writable Object Property Modification Vulnerability

Vulnerability

A vulnerability exists in Mozilla Firefox versions prior to 144, Firefox ESR versions prior to 115.29 and 140.4, as well as Thunderbird versions prior to 144 and 140.4. This vulnerability allows for the modification of JavaScript Object properties that are intended to be non-writable.

Impact

Exploiting this vulnerability could lead to unauthorized changes in JavaScript Object properties, potentially allowing for manipulation of application behavior or data.

Remediation

Users can upgrade to Firefox 144, Firefox ESR 115.29 or 140.4, or Thunderbird 144 or 140.4 to address this vulnerability.

Added: Oct 14, 2025, 1:32 PM
Updated: Oct 14, 2025, 11:45 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
4.4
remediation
7.7
relevance
0.7
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.