CYBER CODE RED

Get real-time updates on Telegram

P4Verified

CVE-2025-1930

CVE-2025-1930. CVSS base score 8.8 (HIGH, Source advisory). EPSS 0.00401 (percentile 0.32013), scored 2026-10-04.

Affected technology

firefox · before 115.21.0 (exclusive)
mozilla

firefox · before 136.0 (exclusive)
mozilla

firefox · from 116.0 (inclusive), before 128.8.0 (exclusive)
mozilla

thunderbird · before 128.8 (exclusive)
mozilla

thunderbird · after 1.28.8 (exclusive), before 136.0 (exclusive)
mozilla

Component: Not specified by the source

Attack conditions (Source advisory, CVSS 3.1): Network (remote) · No privileges required · User interaction required

What an attacker can do

Source advisory’s CVSS 3.1 assessment rates confidentiality, integrity and availability impact as high. The description does not specify what an attacker can achieve beyond these rated impacts.

Published

CWE
CWE-416
CCR priority
35.3 /100 (P4)
CVSS
8.8 /10 · CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H · Source advisory
EPSS
0.00401 · percentile 0.32013 · 2026-10-04
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2025-1930.html