CVE-2025-8041

MEDIUM

Firefox < 141.0 - URL Origin Misrepresentation in Address Bar

Title source: llm
STIX 2.1

Description

In the address bar, Firefox for Android truncated the display of URLs from the end instead of prioritizing the origin. This vulnerability was fixed in Firefox 141.

References (2)

Core 2
Core References
Issue Tracking, Permissions Required
https://bugzilla.mozilla.org/show_bug.cgi?id=1670725

Scores

CVSS v3 5.3
EPSS 0.0026
EPSS Percentile 16.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-451
Status published
Products (2)
mozilla/firefox < 141.0
Mozilla/Firefox 141
Published Aug 19, 2025
Tracked Since Feb 18, 2026