Beveiligingsadvies

CVE-2025-6435

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-06-24 12:28:04
Laatst bijgewerkt 2026-04-13 14:31:13
Toegewezen door mozilla
CVSS-score 8.1
Status PUBLISHED

Beschrijving

If a user saved a response from the Network tab in Devtools using the Save As context menu option, that file may not have been saved with the `.download` file extension. This could have led to the user inadvertently running a malicious executable. This vulnerability was fixed in Firefox 140 and Thunderbird 140.