cve/2025/CVE-2025-3029.md
2025-09-29 21:09:30 +02:00

1019 B

CVE-2025-3029

Description

A crafted URL containing specific Unicode characters could have hidden the true origin of the page, resulting in a potential spoofing attack. This vulnerability affects Firefox < 137, Firefox ESR < 128.9, Thunderbird < 137, and Thunderbird < 128.9.

POC

Reference

Github