Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Albert

#28536of 53,624
9Total CVSS
Vulnerabilities · 1
PT-2025-26729
9.0
2025-06-24
Mozilla · Firefox · CVE-2025-6432
Name of the Vulnerable Software and Affected Versions: Firefox versions prior to 140 Description: The issue occurs when Multi-Account Containers is enabled, allowing DNS requests to bypass a SOCKS proxy under certain conditions, such as when the domain name is invalid or the SOCKS proxy is not responding. Recommendations: For versions prior to 140, update to version 140 or later to resolve the issue. As a temporary workaround, consider disabling Multi-Account Containers until the update is applied. Restrict access to SOCKS proxies to minimize the risk of exploitation. Avoid using invalid domain names in SOCKS proxy configurations until the issue is resolved.