Log Exposure Vulnerability in Firefox for Android and Thunderbird
CVE-2025-4090
6.5MEDIUM
What is CVE-2025-4090?
A log exposure vulnerability was discovered in Firefox for Android and Thunderbird, where sensitive library locations were inadvertently logged through Logcat. This flaw could potentially expose private information about users' libraries and sensitive data, affecting user privacy and security. It impacts versions prior to 138 of both Firefox for Android and Thunderbird, highlighting the importance of updating to secure versions to mitigate risks.
Affected Version(s)
Firefox < 138
Thunderbird < 138