CVE-2025-4089 - Mozilla Firefox/Thunderbird Command Injection Vulnerability
CVE ID : CVE-2025-4089
Published : April 29, 2025, 2:15 p.m. | 1 hour, 21 minutes ago
Description : Due to insufficient escaping of special characters in the "copy as cURL" feature, an attacker could trick a user into using this command, potentially leading to local code execution on the user's system. This vulnerability affects Firefox < 138 and Thunderbird < 138.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : April 29, 2025, 2:15 p.m. | 1 hour, 21 minutes ago
Description : Due to insufficient escaping of special characters in the "copy as cURL" feature, an attacker could trick a user into using this command, potentially leading to local code execution on the user's system. This vulnerability affects Firefox < 138 and Thunderbird < 138.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...