
The indian computer Emergency response group (CERT-In) has released a high-severity advisory for Mozilla Firefox, noting several security flaws that would endanger private and organisational statistics.
Issued below the authority of the Ministry of Electronics and statistics generation (meity), the warning applies to both the same old and extended guide release (ESR) variants of the browser.
What is Affected?
CERT-In's advisory (CIVN-2025-0138) lists several Firefox builds as vulnerable:
Mozilla Firefox: variations previous to a hundred and forty
Firefox ESR: variations prior to a hundred and fifteen.25 and prior to 128.12
Who's at chance?
Man or woman users surfing unpatched systems.
Employer users and big businesses face unique dangers, as one exploit should reveal big volumes of touchy facts.
Nature of the Vulnerabilities
CERT-In attributes the flaws to:
Reminiscence corruption.
Incorrect handling of web requests.
An attacker should take advantage of these vulnerabilities by using deceptive a sufferer into visiting a malicious internet site and exploiting its safety vulnerabilities to:
Execute arbitrary code
Bypass current protection capabilities
Boost privileges
Get admission to sensitive machine data
A way to live included
To close the safety gap, customers should:
Update without delay to the present day versions of Firefox and Firefox ESR.
Review Mozilla's safety portal for targeted patch notes and technical notes.
Keep away from clicking on strange hyperlinks till the browser is absolutely patched.
In businesses, gadget directors must push the updates to each endpoint right away.
Bottom Line: running an previous Firefox leaves your device exposed. These insects can permit attackers to seize complete manage if patches are not on time. CERT-In's warning serves as a well timed reminder that retaining software program up to date is one of the handiest methods to shield personal and organisational protection.
Disclaimer: This content has been sourced and edited from Indiaherald. While we have made adjustments for clarity and presentation, the unique content material belongs to its respective authors and internet site. We do not claim possession of the content material.