CVE-2023-32205: Mozilla Firefox
Medium severity, CVSS 4.3. EPSS: 0.6% chance of exploitation in the next 30 days.
In multiple cases browser prompts could have been obscured by popups controlled by content. These could have led to potential user confusion and spoofing attacks. This vulnerability affects Firefox < 113, Firefox ESR < 102.11, and Thunderbird < 102.11.
Affected products
- Mozilla Firefox: before 113.0 (fixed in 113.0)
- Mozilla Firefox ESR: before 102.11 (fixed in 102.11)
- Mozilla Thunderbird: before 102.11 (fixed in 102.11)
Published 2023-06-02. Last modified 2026-06-17.