CVE-2025-5270

Publication date

2025-05-27 12:29:28

Family

mozilla

State

PUBLISHED

Description

In certain cases, SNI could have been sent unencrypted even when encrypted DNS was enabled. This vulnerability affects Firefox < 139 and Thunderbird < 139.