PT-2025-26723 · Mozilla+4 · Firefox+4
Pwn2Car
·
Published
2025-06-24
·
Updated
2025-12-03
·
CVE-2025-6426
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Firefox versions prior to 140
Firefox ESR versions prior to 128.12
Description:
The issue is related to the executable file warning not alerting users before opening files with the
terminal extension. This problem specifically affects Firefox for macOS, with other versions of Firefox being unaffected.Recommendations:
For Firefox versions prior to 140, update to version 140 or later to resolve the issue.
For Firefox ESR versions prior to 128.12, update to version 128.12 or later to resolve the issue.
Fix
Insufficient Verification of Data Authenticity
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Firefox
Linuxmint
Suse
Ubuntu