Information Leakage in Firefox Browser by Mozilla
CVE-2025-3035
5.3MEDIUM
Summary
A vulnerability in the Mozilla Firefox browser allows sensitive information to be inadvertently shared between chat sessions. When a user interacts with the AI chatbot in one tab and subsequently engages the chatbot in another tab, the document title from the first tab is unintentionally displayed in the chat prompt of the second tab. This behavior could potentially expose confidential information to other users or compromise privacy, especially in environments where sensitive documents are being accessed. Users are encouraged to update their browsers to mitigate this risk.
Affected Version(s)
Firefox < 137
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Matthew Noorenberghe