Security Advisory
CVE-2025-6432
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
When Multi-Account Containers was enabled, DNS requests could have bypassed a SOCKS proxy when the domain name was invalid or the SOCKS proxy was not responding. This vulnerability was fixed in Firefox 140 and Thunderbird 140.