CVE-2023-25731
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Jun 2, 2023
Updated: Jan 10, 2025
CWE ID 1284
Summary
CVE-2023-25731 is a vulnerability impacting Firefox browsers below version 110. The issue stems from URL previews in the network panel of developer tools, which inadequately handle query parameters. Maliciously crafted URLs with these parameters may overwrite global objects within privileged code, posing a security risk. This vulnerability could potentially allow an attacker to execute arbitrary code or make unauthorized changes to web pages.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.