PT-2025-26723 · Mozilla+4 · Firefox+4

Pwn2Car

·

Published

2025-06-24

·

Updated

2025-12-03

·

CVE-2025-6426

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Firefox versions prior to 140 Firefox ESR versions prior to 128.12
Description: The issue is related to the executable file warning not alerting users before opening files with the terminal extension. This problem specifically affects Firefox for macOS, with other versions of Firefox being unaffected.
Recommendations: For Firefox versions prior to 140, update to version 140 or later to resolve the issue. For Firefox ESR versions prior to 128.12, update to version 128.12 or later to resolve the issue.

Fix

Insufficient Verification of Data Authenticity

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2025-10542
ALT-PU-2025-11100
ALT-PU-2025-11495
ALT-PU-2025-11497
ALT-PU-2025-14599
ALT-PU-2025-8725
ALT-PU-2025-9988
BDU:2025-07727
CVE-2025-6426
OPENSUSE-SU-2025-20135-1
OPENSUSE-SU-2025:15216-1
OPENSUSE-SU-2025:15312-1
OPENSUSE-SU-2025:15315-1
OPENSUSE-SU-2025:15325-1
OPENSUSE-SU-2025:20135-1
SUSE-SU-2025:02122-1
SUSE-SU-2025:02123-1
SUSE-SU-2025:02339-1
SUSE-SU-2025:02368-1
SUSE-SU-2025:02529-1
SUSE-SU-2025:02546-1
SUSE-SU-2025:21170-1
SUSE-SU-2025_02122-1
SUSE-SU-2025_02123-1
SUSE-SU-2025_02339-1
SUSE-SU-2025_02529-1
USN-7663-1

Affected Products

Alt Linux
Firefox
Linuxmint
Suse
Ubuntu