Due to URL previews in the network panel of developer tools improperly storing URLs, query parameters could potentially be used to overwrite global objects in privileged code. This vulnerability affects Firefox < 110.
History

Fri, 10 Jan 2025 18:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-1284
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mozilla

Published:

Updated: 2025-01-10T17:28:39.783Z

Reserved: 2023-02-13T00:00:00

Link: CVE-2023-25731

cve-icon Vulnrichment

Updated: 2024-08-02T11:32:11.624Z

cve-icon NVD

Status : Modified

Published: 2023-06-02T17:15:11.147

Modified: 2025-01-10T18:15:18.277

Link: CVE-2023-25731

cve-icon Redhat

Severity : Low

Publid Date: 2023-02-14T00:00:00Z

Links: CVE-2023-25731 - Bugzilla