Mozilla · Firefox · CVE-2025-1933
**Name of the Vulnerable Software and Affected Versions**
Firefox versions prior to 136
Firefox ESR versions prior to 115.21
Firefox ESR versions prior to 128.8
**Description**
The issue arises when the JIT compiles WASM i32 return values on 64-bit CPUs, potentially picking up bits from leftover memory. This can cause the values to be treated as a different type.
**Recommendations**
For Firefox versions prior to 136, update to version 136 or later.
For Firefox ESR versions prior to 115.21, update to version 115.21 or later.
For Firefox ESR versions prior to 128.8, update to version 128.8 or later.