First published: Mon Apr 21 2025(Updated: )
Websites directing users to long URLs that caused eliding to occur in the location view could leverage the truncating behavior to potentially trick users into thinking they were on a different webpage
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Focus | <138 | |
Mozilla Focus | <138 | 138 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-3859 has been classified with a medium severity rating.
To mitigate CVE-2025-3859, users should upgrade to Focus version 138 or later.
CVE-2025-3859 could potentially mislead users by truncating long URLs, leading to a misconception of their webpage location.
CVE-2025-3859 affects Focus versions prior to 138.
There are no specific workarounds for CVE-2025-3859, so updating is recommended to mitigate the risk.