CVE-2023-25731: Mozilla Firefox

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Due to URL previews in the network panel of developer tools improperly storing URLs, query parameters could potentially be used to overwrite global objects in privileged code. This vulnerability affects Firefox < 110.

Affected products

  • Mozilla Firefox: before 110.0 (fixed in 110.0)

Published 2023-06-02. Last modified 2026-06-17.