CVE-2025-6430

Description

When a file download is specified via the Content-Disposition header, that directive would be ignored if the file was included via a <embed> or <object> tag, potentially making a website vulnerable to a cross-site scripting attack. This vulnerability was fixed in Firefox 140, Firefox ESR 128.12, Thunderbird 140, and Thunderbird 128.12.

Risk Information

Base Score
6.1
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
EPSS Score
Exploitation Probability
0.102

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2025-6424,CVE-2025-6425,CVE-2025-6426,CVE-2025-6429,CVE-2025-6430 are fixed in Mozilla Firefox ESR (128) (128.12.0)Windows
Vulnerabilities CVE-2025-6424,CVE-2025-6425,CVE-2025-6426,CVE-2025-6429,CVE-2025-6430 are fixed in Mozilla Firefox ESR (128) (x64) (128.12.0)Windows
Multiple vulnerabilities are fixed in Mozilla Firefox (140.0)Windows
Multiple vulnerabilities are fixed in Mozilla Firefox (x64) (140.0)Windows
Vulnerabilities CVE-2025-6424,CVE-2025-6425,CVE-2025-6426,CVE-2025-6429,CVE-2025-6430 are fixed in Mozilla Thunderbird 128 (128.12.0)Windows
Vulnerabilities CVE-2025-6424,CVE-2025-6425,CVE-2025-6426,CVE-2025-6429,CVE-2025-6430 are fixed in Mozilla Thunderbird 128 (x64) (128.12.0)Windows
Multiple vulnerabilities are fixed in Mozilla Thunderbird (140.0)Windows
Multiple vulnerabilities are fixed in Mozilla Thunderbird (x64) (140.0)Windows
Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 128.11.99Windows
Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 139.99Windows
Multiple Vulnerabilities are affected in Mozilla_Firefox 128.11.99Windows
Multiple Vulnerabilities are affected in Mozilla_Firefox 139.99Windows
Multiple vulnerabilities are fixed in Mozilla Firefox For Mac (140.0)Mac
Multiple vulnerabilities are fixed in Mozilla Firefox For Mac (140.0.1)Mac
Multiple vulnerabilities are fixed in Mozilla Firefox For Mac (140.0.2)Mac
Multiple vulnerabilities are fixed in Mozilla Firefox For Mac (140.0.4)Mac
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-zh-tw_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-zh-cn_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-xh_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-vi_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-uz_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ur_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-uk_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-trs_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-tr_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-tl_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-th_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-tg_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-te_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ta_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-szl_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-sv-se_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-sr_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-sq_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-son_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-sl_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-skr_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-sk_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-si_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-sco_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-sc_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-sat_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ru_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ro_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-rm_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-pt-pt_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-pt-br_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-pl_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-pa-in_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-oc_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-nn-no_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-nl_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ne-np_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-nb-no_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-my_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ms_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-mr_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-mk_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-lv_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-lt_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-lij_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ko_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-kn_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-km_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-kk_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-kab_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ka_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ja_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-it_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-is_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-id_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ia_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-hy-am_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-hu_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-hsb_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-hr_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-hi-in_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-he_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-gu-in_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-gn_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-gl_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-gd_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ga-ie_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-fy-nl_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-fur_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-fr_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-fi_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ff_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-fa_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-eu_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-et_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-es-mx_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-es-es_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-es-cl_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-es-ar_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-eo_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-en-gb_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-en-ca_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-el_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-dsb_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-de_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-da_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-cy_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-cs_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-cak_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ca-valencia_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ca_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-bs_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-br_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-bn_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-bg_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-be_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-az_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ast_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ar_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-an_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-all_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-af_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr-l10n-ach_128.12.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr_128.12.0esr-1~deb12u1_i386.debLinux
firefox-esr security update(DSA-5950-1) firefox-esr_128.12.0esr-1~deb12u1_amd64.debLinux
SUSE-SU-2025:02122-1(Desktop Applications Module 15 SP6) MozillaFirefox-translations-other-128.12.0-150200.152.188.1.x86_64.rpmLinux
SUSE-SU-2025:02122-1(Desktop Applications Module 15 SP6) MozillaFirefox-translations-common-128.12.0-150200.152.188.1.x86_64.rpmLinux
SUSE-SU-2025:02122-1(Desktop Applications Module 15 SP6) MozillaFirefox-devel-128.12.0-150200.152.188.1.noarch.rpmLinux
SUSE-SU-2025:02122-1(Desktop Applications Module 15 SP6) MozillaFirefox-debugsource-128.12.0-150200.152.188.1.x86_64.rpmLinux
SUSE-SU-2025:02122-1(Desktop Applications Module 15 SP6) MozillaFirefox-debuginfo-128.12.0-150200.152.188.1.x86_64.rpmLinux
SUSE-SU-2025:02122-1(Desktop Applications Module 15 SP6) MozillaFirefox-128.12.0-150200.152.188.1.x86_64.rpmLinux
(RHSA-2025:10072)Important: security update firefox-x11-128.12.0-1.el9_6.x86_64.rpmLinux
(RHSA-2025:10072)Important: security update firefox-128.12.0-1.el9_6.x86_64.rpmLinux
(RHSA-2025:10073)Important: security update firefox-128.12.0-1.el10_0.x86_64.rpmLinux
(RHSA-2025:10074)Important: security update firefox-128.12.0-1.el8_10.x86_64.rpmLinux
Important: firefox security update firefox-128.12.0-1.el8_10.alma.1.x86_64.rpmLinux
Important: firefox security update firefox-x11-128.12.0-1.el9_6.alma.1.x86_64.rpmLinux
Important: firefox security update firefox-128.12.0-1.el9_6.alma.1.x86_64.rpmLinux
Firefox update (ELSA-2025-10074) firefox-128.12.0-1.0.1.el8_10.x86_64.rpmLinux
Firefox-x11 update (ELSA-2025-10072) firefox-x11-128.12.0-1.0.1.el9_6.x86_64.rpmLinux
Firefox update (ELSA-2025-10072) firefox-128.12.0-1.0.1.el9_6.x86_64.rpmLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-es-es_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-de_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-el_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-en-ca_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-en-gb_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-es-ar_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-es-mx_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-et_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-eu_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-fi_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-fr_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-fy-nl_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-dsb_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-da_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-cy_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-cs_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-cak_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-ca_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-br_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-bg_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-be_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-ast_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-ar_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-all_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-af_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird_128.12.0esr-1~deb12u1_i386.debLinux
thunderbird security update(DSA-5959-1) thunderbird_128.12.0esr-1~deb12u1_amd64.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-ga-ie_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-pa-in_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-pl_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-pt-br_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-pt-pt_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-rm_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-ro_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-ru_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-sk_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-sl_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-gd_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-sr_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-sv-se_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-th_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-tr_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-uk_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-uz_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-vi_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-zh-cn_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-zh-tw_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-sq_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-gl_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-he_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-hr_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-hsb_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-hu_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-hy-am_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-id_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-is_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-it_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-nn-no_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-ka_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-kab_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-kk_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-ko_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-lt_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-lv_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-ms_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-nb-no_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-nl_128.12.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5959-1) thunderbird-l10n-ja_128.12.0esr-1~deb12u1_all.debLinux
Important: thunderbird security update ALSA-2025:10246 thunderbird-128.12.0-1.el8_10.alma.1.x86_64.rpmLinux
firefox Security Update (ALAS2023-2025-1055) firefox-128.12.0-1.amzn2023.0.1.x86_64.rpmLinux
SUSE-SU-2025:02122-1(Desktop Applications Module 15 SP7) MozillaFirefox-128.12.0-150200.152.188.1.x86_64.rpmLinux
SUSE-SU-2025:02122-1(Desktop Applications Module 15 SP7) MozillaFirefox-debuginfo-128.12.0-150200.152.188.1.x86_64.rpmLinux
SUSE-SU-2025:02122-1(Desktop Applications Module 15 SP7) MozillaFirefox-debugsource-128.12.0-150200.152.188.1.x86_64.rpmLinux
SUSE-SU-2025:02122-1(Desktop Applications Module 15 SP7) MozillaFirefox-devel-128.12.0-150200.152.188.1.noarch.rpmLinux
SUSE-SU-2025:02122-1(Desktop Applications Module 15 SP7) MozillaFirefox-translations-common-128.12.0-150200.152.188.1.x86_64.rpmLinux
SUSE-SU-2025:02122-1(Desktop Applications Module 15 SP7) MozillaFirefox-translations-other-128.12.0-150200.152.188.1.x86_64.rpmLinux
Mozilla Open Source mail and newsgroup client (USN-7663-1) USN-7663-1 thunderbird_128.12.0+build1-0ubuntu0.22.04.1_amd64.debLinux
SUSE-SU-2025:02529-1(Desktop Applications Module 15 SP7) MozillaFirefox-translations-other-140.1.0-150200.152.193.1.x86_64.rpmLinux
SUSE-SU-2025:02529-1(Desktop Applications Module 15 SP6) MozillaFirefox-translations-other-140.1.0-150200.152.193.1.x86_64.rpmLinux
SUSE-SU-2025:02529-1(Desktop Applications Module 15 SP7) MozillaFirefox-translations-common-140.1.0-150200.152.193.1.x86_64.rpmLinux
SUSE-SU-2025:02529-1(Desktop Applications Module 15 SP6) MozillaFirefox-translations-common-140.1.0-150200.152.193.1.x86_64.rpmLinux
SUSE-SU-2025:02529-1(Desktop Applications Module 15 SP7) MozillaFirefox-devel-140.1.0-150200.152.193.1.noarch.rpmLinux
SUSE-SU-2025:02529-1(Desktop Applications Module 15 SP6) MozillaFirefox-devel-140.1.0-150200.152.193.1.noarch.rpmLinux
SUSE-SU-2025:02529-1(Desktop Applications Module 15 SP7) MozillaFirefox-debugsource-140.1.0-150200.152.193.1.x86_64.rpmLinux
SUSE-SU-2025:02529-1(Desktop Applications Module 15 SP6) MozillaFirefox-debugsource-140.1.0-150200.152.193.1.x86_64.rpmLinux
SUSE-SU-2025:02529-1(Desktop Applications Module 15 SP7) MozillaFirefox-debuginfo-140.1.0-150200.152.193.1.x86_64.rpmLinux
SUSE-SU-2025:02529-1(Desktop Applications Module 15 SP6) MozillaFirefox-debuginfo-140.1.0-150200.152.193.1.x86_64.rpmLinux
SUSE-SU-2025:02529-1(Desktop Applications Module 15 SP7) MozillaFirefox-branding-SLE-140-150200.9.21.1.x86_64.rpmLinux
SUSE-SU-2025:02529-1(Desktop Applications Module 15 SP6) MozillaFirefox-branding-SLE-140-150200.9.21.1.x86_64.rpmLinux
SUSE-SU-2025:02529-1(Desktop Applications Module 15 SP7) MozillaFirefox-140.1.0-150200.152.193.1.x86_64.rpmLinux
SUSE-SU-2025:02529-1(Desktop Applications Module 15 SP6) MozillaFirefox-140.1.0-150200.152.193.1.x86_64.rpmLinux
firefox security update (RLSA-2025:10074) RLSA-2025:10074 firefox-128.12.0-1.el8_10.x86_64.rpmLinux
thunderbird security update (RLSA-2025:10246) RLSA-2025:10246 thunderbird-128.12.0-1.el8_10.x86_64.rpmLinux

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-349138Mozilla Firefox (140.0)
PATCH-349139Mozilla Firefox (x64) (140.0)
PATCH-349332Mozilla Thunderbird 128 (128.12.0)
PATCH-349333Mozilla Thunderbird 128 (x64) (128.12.0)
PATCH-349424Mozilla Thunderbird (140.0)
PATCH-349425Mozilla Thunderbird (x64) (140.0)
PATCH-351030Mozilla Firefox (x64) (142.0.1)
PATCH-351030Mozilla Firefox (x64) (142.0.1)
PATCH-351029Mozilla Firefox (142.0.1)
PATCH-351029Mozilla Firefox (142.0.1)
PATCH-611870Mozilla Firefox For Mac (142.0.1)
PATCH-611870Mozilla Firefox For Mac (142.0.1)
PATCH-611870Mozilla Firefox For Mac (142.0.1)
PATCH-611870Mozilla Firefox For Mac (142.0.1)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234