FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Mozilla -- JavaScript Object property overriding

Affected packages
firefox < 144.0.0,2
firefox-esr < 140.4.0
thunderbird < 144.0.0

Details

VuXML ID fff839db-ad04-11f0-b2aa-b42e991fc52e
Discovery 2025-10-14
Entry 2025-10-19

security@mozilla.org reports:

There was a way to change the value of JavaScript Object properties that were supposed to be non-writeable.

References

CVE Name CVE-2025-11711
URL https://nvd.nist.gov/vuln/detail/CVE-2025-11711