CVE-2025-3035
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Published Apr 1, 2025
Updated: Apr 15, 2025
CWE ID 359
Summary
CVE-2025-3035 is a vulnerability affecting Firefox browsers version 137 and below. An attacker can leverage this issue by manipulating the AI chatbot feature. By engaging the chatbot in one tab, then activating it in another tab, the document title of the previous tab is inadvertently disclosed and leaked into the chat prompt, potentially revealing sensitive information.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Mozilla Firefox
Affected Vendors
- Mozilla