CVE-2025-1019

4.3MEDIUM

The z-order of the browser windows could be manipulated to hide the fullscreen notification. This could potentially be leveraged to perform a spoofing attack. This vulnerability affects Firefox < 135

发布于: 2/4/2025更新于: 2/6/2025

描述

The z-order of the browser windows could be manipulated to hide the fullscreen notification. This could potentially be leveraged to perform a spoofing attack. This vulnerability affects Firefox < 135 and Thunderbird < 135.

AI分析AI驱动

受影响产品

mozillafirefox
mozillathunderbird

参考资料