Mozilla · Firefox · CVE-2025-11719
**Name of the Vulnerable Software and Affected Versions**
Firefox versions prior to 144
Thunderbird versions prior to 144
**Description**
A flaw exists in Firefox and Thunderbird where the use of the native messaging API by web extensions on Windows may result in crashes due to use-after-free memory corruption. This issue impacts the stability of the applications when interacting with native messaging hosts.
**Recommendations**
Update Firefox to version 144 or later.
Update Thunderbird to version 144 or later.