REDHAT-BUG-2428971: Low severity Mozilla Firefox vulnerability
Published Jan 13, 2026
·Updated
Spoofing issue in the DOM: Copy & Paste and Drag & Drop component. This vulnerability affects Firefox < 147 and Firefox ESR < 140.7.
Affected Software
2 affected components
Mozilla Firefox<147
Mozilla Firefox ESR<140.7
Event History
Jan 13, 2026
Data Sourced
via Red Hat·02:02 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2428971?
The severity of REDHAT-BUG-2428971 is classified as a spoofing vulnerability.
2
How do I fix REDHAT-BUG-2428971?
To fix REDHAT-BUG-2428971, you should update to Firefox version 147 or higher, or Firefox ESR version 140.7 or higher.
3
Who is affected by REDHAT-BUG-2428971?
Users of Mozilla Firefox versions lower than 147 and Firefox ESR versions lower than 140.7 are affected by REDHAT-BUG-2428971.
4
Can REDHAT-BUG-2428971 be exploited remotely?
Yes, REDHAT-BUG-2428971 can potentially be exploited remotely through crafted web content.
5
What are the potential impacts of REDHAT-BUG-2428971?
The potential impacts of REDHAT-BUG-2428971 include unauthorized actions through spoofing attacks on affected browser versions.