Security Advisory
CVE-2025-5270
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
In certain cases, SNI could have been sent unencrypted even when encrypted DNS was enabled. This vulnerability was fixed in Firefox 139 and Thunderbird 139.