CVE-2025-6428 Information

Description

When a URL was provided in a link querystring parameter Firefox for Android would follow that URL instead of the correct URL potentially leading to phishing attacks. This bug only affects Firefox for Android. Other versions of Firefox are unaffected. This vulnerability affects Firefox < 140.

Reference

https://bugzilla.mozilla.org/show_bug.cgi?id=1970151 https://www.mozilla.org/security/advisories/mfsa2025-51/

CNNVD-202506-3074 (Published: 2025-06-24)

Share on: