CVE-2025-9180 | Same-origin policy bypass in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 142, Firefox ESR 115.27, Firefox ESR 128.14, Firefox ESR 140.2, Thunderbird 142, Thunderbird 128.14, and Thunderbird 140.2.
Same-origin policy bypass in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 142, Firefox ESR 115.27, Firefox ESR 128.14, Firefox ESR 140.2, Thunderbird 142, Thunderbird 128.14, and Thunderbird 140.2.
- 🔗 bugzilla.mozilla.org/show_bug.cgi
- 🔗 www.mozilla.org/security/advisories/mfsa2025-64/
- 🔗 www.mozilla.org/security/advisories/mfsa2025-65/
- 🔗 www.mozilla.org/security/advisories/mfsa2025-66/
- 🔗 www.mozilla.org/security/advisories/mfsa2025-67/
- 🔗 www.mozilla.org/security/advisories/mfsa2025-70/
- 🔗 www.mozilla.org/security/advisories/mfsa2025-71/
- 🔗 www.mozilla.org/security/advisories/mfsa2025-72/
```Code``` unterstützt. Zero-Day & Vulnerability Intelligence Hub
Echtzeit-Tracking mit EPSS Exploit-Wahrscheinlichkeiten, Angriffsvektor-Decodern und KI-Patch-Anleitungen.
📊 Historien-Charts — Criticals-Trend · Vendors · EPSS-Verteilung
| Tier | CVEs | Anteil |
|---|---|---|
| ≥90 % | 720 | 0,2 % |
| ≥50 % | 3.223 | 0,9 % |
| ≥10 % | 22.114 | 6,0 % |
| <10 % | 341.998 | 92,9 % |
CVE-2025-9180 | Same-origin policy bypass in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 142, Firefox ESR 115.27, Firefox ESR 128.14, Firefox ESR 140.2, Thunderbird 142, Thunderbird 128.14, and Thunderbird 140.2.
Same-origin policy bypass in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 142, Firefox ESR 115.27, Firefox ESR 128.14, Firefox ESR 140.2, Thunderbird 142, Thunderbird 128.14, and Thunderbird 140.2.
Noch keine Analyse zu CVE-2025-9180
Sei der Erste: Einschätzung, Betroffenheit, Workaround oder PoC — mit Antworten im Thread.