Pages with malicious titles could potentially allow saved PDF content to overwrite PDF files or bundled content within the Firefox for iOS applicatio…
If a user saved a response from the Network tab in Devtools using the Save As context menu option, that file may not have been saved with the `.downl…
The executable file warning was not presented when downloading .xrm-ms files. *Note: This issue only affected Windows operating systems. Other oper…
When opening Diagcab files, Firefox did not warn the user that these files may contain malicious code. This vulnerability affects Firefox < 115, Fire…
When downloading an HTML file, if the title of the page was formatted as a filename with a malicious extension, Firefox may have saved the file with …
An attacker who could have convinced a user to drag and drop an image to a filesystem could have manipulated the resulting filename to contain an exe…
An attacker who could have convinced a user to drag and drop an image to a filesystem could have manipulated the resulting filename to contain an exe…
Mozilla VPN can load an OpenSSL configuration file from an unsecured directory. A user or attacker with limited privileges could leverage this to lau…
Given an installed malicious file picker application, an attacker was able to steal and upload local files of their choosing, regardless of the actua…