CVE-2025-1019

4.3MEDIUM

The z-order of the browser windows could be manipulated to hide the fullscreen notification. This could potentially be leveraged to perform a spoofing attack. This vulnerability affects Firefox < 135

Published: 2/4/2025Updated: 2/6/2025

Description

The z-order of the browser windows could be manipulated to hide the fullscreen notification. This could potentially be leveraged to perform a spoofing attack. This vulnerability affects Firefox < 135 and Thunderbird < 135.

AI AnalysisPowered by AI

Affected Products

mozillafirefox
mozillathunderbird

References