← Back

CVE-2025-3859

nvd nist
Published: Apr 30, 2025Modified: Jun 17, 2026

JSON object

Loading...
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

Websites directing users to long URLs that caused eliding to occur in the location view could leverage the truncating behavior to potentially trick users into thinking they were on a different webpage. This vulnerability was fixed in Focus 138.

Affected (1)

1 product
Firefox Focus
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 138.0

References (2)

Source: security@mozilla.org
Issue Tracking
Source: security@mozilla.org
Vendor Advisory

Timeline

No history available yet.