Mozilla Firefox Cross-Origin Leak Vulnerability in Error Handling

Vulnerability

A vulnerability exists in Firefox versions prior to 139, Firefox ESR versions prior to 115.24, and Firefox ESR 128.10, due to improper isolation of error handling for script execution from web content. This flaw could have facilitated cross-origin leak attacks.

Impact

Exploitation of this vulnerability could have allowed cross-origin leak attacks, enabling the unauthorized transfer of information between different origins.

Remediation

Users can upgrade to Firefox 139, Firefox ESR 115.24, or Firefox ESR 128.11 to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.7
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.