FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Mozilla -- Same-origin policy bypass in the Graphics: Canvas2D component

Affected packages
firefox < 142.0.0,2
firefox-esr < 140.2.0
thunderbird < 142.0.0
thunderbird < 140.2.0

Details

VuXML ID 0723a60e-b80a-11f0-8016-b42e991fc52e
Discovery 2025-08-19
Entry 2025-11-02

https://bugzilla.mozilla.org/show_bug.cgi?id=1979782 reports:

Same-origin policy bypass in the Graphics: Canvas2D component.

References

CVE Name CVE-2025-9180
URL https://cveawg.mitre.org/api/cve/CVE-2025-9180