URL Search Term Persistence in Firefox and Thunderbird Products
CVE-2025-8039

8.1HIGH

Key Information:

Vendor

Mozilla

Vendor
CVE Published:
22 July 2025

What is CVE-2025-8039?

This vulnerability allows search terms to remain in the URL bar when users navigate away from the search page. This can potentially expose sensitive queries to other users or applications. The issue impacts versions of Firefox and Thunderbird prior to the specified versions, highlighting the importance of regular updates to mitigate privacy risks.

Affected Version(s)

Firefox < 141

Firefox ESR < 140.1

Thunderbird < 141

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Sören Hentzschel
.