First published: Tue Feb 04 2025(Updated: )
A race condition could have led to private browsing tabs being opened in normal browsing windows. This could have resulted in a potential privacy leak.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox ESR | <128.7 | 128.7 |
Mozilla Thunderbird | <135 | 135 |
Mozilla Firefox | <135 | 135 |
Mozilla Thunderbird | <128.7 | 128.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
(Found alongside the following vulnerabilities)
CVE-2025-1013 has been identified as a medium severity vulnerability related to potentially exposing private browsing tabs.
To remediate CVE-2025-1013, update Mozilla Firefox or Thunderbird to versions 135 or 128.7, respectively.
CVE-2025-1013 is caused by a race condition that could lead to the opening of private browsing tabs in normal browsing windows.
CVE-2025-1013 affects Firefox ESR versions up to 128.7 and both Firefox and Thunderbird versions up to 135.
Yes, CVE-2025-1013 could result in potential privacy leaks by exposing content from private browsing sessions.