4.3 CVE-2025-8364

 

A crafted URL using a blob: URI could have hidden the true origin of the page, resulting in a potential spoofing attack. *Note: This issue only affected Android operating systems. Other operating systems are unaffected.* This vulnerability affects Firefox < 141.
https://nvd.nist.gov/vuln/detail/CVE-2025-8364

Categories

CWE-451

References


 

CPE

cpe start end
Configuration 1
AND
   cpe:2.3:a:mozilla:firefox:*:*:*:*:-:*:*:* < 141.0
  Running on/with
  cpe:2.3:o:google:android:-:*:*:*:*:*:*:*


REMEDIATION




EXPLOITS


Exploit-db.com

id description date
No known exploits

POC Github

Url

Other Nist (github, ...)

Url
No known exploits


CAPEC


Common Attack Pattern Enumerations and Classifications

id description severity
No entry