Mozilla Firefox Clickjacking Vulnerability Leading to Payment Card Detail Leakage

Vulnerability

A clickjacking vulnerability exists in Firefox versions prior to 139 and Firefox ESR versions prior to 128.11. This vulnerability could have been exploited to trick users into unintentionally disclosing saved payment card information to a malicious website.

Impact

Exploitation of this vulnerability could have resulted in the unauthorized disclosure of saved payment card details to a malicious page.

Remediation

Users can update to Firefox 139 or Firefox ESR 128.11 to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.