REDHAT-BUG-2503485: High severity Mozilla Firefox vulnerability
Same-origin policy bypass in the DOM: Navigation component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, and Firefox ESR 140.13.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
firefoxto a version that resolves this vulnerability.Fixed in 153 - Upgrade
Upgrade
firefox esrto a version that resolves this vulnerability.Fixed in 115.38 - Upgrade
Upgrade
firefox esrto a version that resolves this vulnerability.Fixed in 140.13
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2503485?
The severity of REDHAT-BUG-2503485 is classified as high (7).
How do I fix REDHAT-BUG-2503485?
To fix REDHAT-BUG-2503485, update to Firefox 153, Firefox ESR 115.38, or Firefox ESR 140.13.
What type of vulnerability is REDHAT-BUG-2503485?
REDHAT-BUG-2503485 is a same-origin policy bypass in the DOM affecting the navigation component.
In which software was REDHAT-BUG-2503485 found?
REDHAT-BUG-2503485 was found in Mozilla Firefox and Mozilla Firefox ESR versions 115.38 and 140.13.
When was REDHAT-BUG-2503485 published?
REDHAT-BUG-2503485 was published on July 21, 2026.