Mozilla Firefox
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*
- < 140
A vulnerability in Mozilla Firefox's Multi-Account Containers feature could have allowed DNS requests to bypass a configured SOCKS proxy. This issue arose when the domain name was invalid or the SOCKS proxy was unresponsive. The vulnerability affects Firefox versions prior to 140.
Exploitation of this vulnerability could lead to DNS requests being leaked outside of the configured SOCKS proxy, potentially exposing users to privacy risks or allowing for network traffic interception.
Users can update to Firefox version 140 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.