8.8
CVE-2025-6426
- EPSS 0.18%
- Veröffentlicht 24.06.2025 12:28:00
- Zuletzt bearbeitet 05.10.2026 15:10:00
- Erkennungen
No warning when opening executable terminal files on macOS
The executable file warning did not warn users before opening files with the `terminal` extension. *This bug only affects Firefox for macOS. Other versions of Firefox are unaffected.*. This vulnerability was fixed in Firefox 140, Firefox ESR 128.12, Thunderbird 140, and Thunderbird 128.12.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.18% | 0.077 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| CISA-ADP | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
CWE-345 Insufficient Verification of Data Authenticity
The product does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.
https://www.mozilla.org/security/advisories/mfsa2025-51/
https://www.mozilla.org/security/advisories/mfsa2025-53/
https://bugzilla.mozilla.org/show_bug.cgi?id=1964385
https://www.mozilla.org/security/advisories/mfsa2025-54/
https://www.mozilla.org/security/advisories/mfsa2025-55/