CVE-2025-13024: JIT miscompilation in the JavaScript Engine: JIT component
Published Nov 11, 2025
·Updated
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 145 and Thunderbird 145.
Affected Software
4 affected componentsFixes available
Mozilla Firefox<145
Mozilla Firefox<145
145
Mozilla Thunderbird<145
145
Mozilla Firefox<145.0
Event History
Nov 11, 2025
CVE Published
via Mozilla·12:00 AM
Data Sourced
via Mozilla·12:00 AM
DescriptionSeverityAffected Software
CVE Published
via MITRE·03:47 PM
Data Sourced
via MITRE·03:47 PM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Nov 13, 2025
Updated
via Mozilla·12:00 AM
Affected Software
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2025-13024?
CVE-2025-13024 is classified as a high-severity vulnerability affecting the JIT component of the JavaScript Engine in Firefox.
2
How do I fix CVE-2025-13024?
To fix CVE-2025-13024, upgrade your Mozilla Firefox to version 145 or later.
3
Which versions of Firefox are vulnerable to CVE-2025-13024?
Firefox versions before 145 are vulnerable to CVE-2025-13024.
4
What are the potential impacts of CVE-2025-13024?
CVE-2025-13024 can lead to potential arbitrary code execution due to JIT miscompilation.
5
Is there a workaround for CVE-2025-13024 until I can upgrade?
Currently, there are no specific workarounds for CVE-2025-13024, so upgrading is essential.