Skip to content

Mozilla Critical Vulnerabilities - 20250714001

Overview

Multiple vulnerabilities have been discovered in Mozilla, the most severe of which could allow for arbitrary code execution.

What is vulnerable?

Product(s) Affected Version(s) CVE CVSS Severity
Firefox Version < 140 CVE-2025-6427 9.1 Critical
Firefox Version < 140 CVE-2025-6433 9.8 Critical
Multiple Mozilla Products Firefox < 140
Firefox ESR < 115.25
Firefox ESR < 128.12
Thunderbird < 140
Thunderbird < 128.12
CVE-2025-6424 9.8 Critical

What has been observed?

The WA SOC has not received any reports of exploitation of this vulnerability on Western Australian Government networks at the time of writing.

Recommendation

The WA SOC recommends administrators apply the solutions as per vendor instructions to all affected devices within expected timeframes (refer Patch Management):

Additional References