Remote Code Execution Vulnerability in Firefox by Mozilla
CVE-2025-10529

Currently unrated

Key Information:

Vendor

Mozilla

Vendor
CVE Published:
16 September 2025

What is CVE-2025-10529?

A remote code execution vulnerability has been identified in Firefox versions below 143 and Firefox Extended Support Release (ESR) below 140.3. This vulnerability allows attackers to execute arbitrary code on affected installations, which could lead to unauthorized access and manipulation of user systems. It is crucial for Firefox users to update to the latest version to mitigate potential exploitation risks.

Affected Version(s)

Firefox < 143

Firefox ESR < 140.3

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Daniel Holbert
.
CVE-2025-10529 : Remote Code Execution Vulnerability in Firefox by Mozilla