FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Mozilla -- cross-origin leak attack

Affected packages
firefox-esr < 115.24.0
firefox < 139.0,2

Details

VuXML ID 5d1e56dc-4222-11f0-976e-b42e991fc52e
Discovery 2025-05-27
Entry 2025-06-05

security@mozilla.org reports:

Error handling for script execution was incorrectly isolated from web content, which could have allowed cross-origin leak attacks.

References

CVE Name CVE-2025-5263
URL https://nvd.nist.gov/vuln/detail/CVE-2025-5263