CVE-2025-10534: Spoofing issue in the Site Permissions component
Spoofing issue in the Site Permissions component. This vulnerability was fixed in Firefox 143 and Thunderbird 143.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 143 - Upgrade
Upgrade
Firefoxto a version that resolves this vulnerability.Fixed in 143 - Upgrade
Upgrade
Thunderbirdto a version that resolves this vulnerability.Fixed in 143
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2025-10534?
CVE-2025-10534 is considered a high-severity vulnerability affecting Firefox versions below 143.
What versions of Firefox are affected by CVE-2025-10534?
CVE-2025-10534 affects all versions of Firefox prior to version 143.
How do I fix CVE-2025-10534?
To fix CVE-2025-10534, upgrade Firefox to version 143 or later.
What type of vulnerability is CVE-2025-10534?
CVE-2025-10534 is a security vulnerability related to Mozilla Firefox's handling of certain operations.
Has CVE-2025-10534 been exploited in the wild?
As of the latest updates, there have been no confirmed reports of active exploitation of CVE-2025-10534.