*This bug only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox < 140.
Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-19087 | When a link can be opened in an external application, Firefox for Android will, by default, prompt the user before doing so. An attacker could have bypassed this prompt, potentially exposing the user to security vulnerabilities or privacy leaks in external applications. *This bug only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox < 140. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 30 Oct 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | firefox: The prompt in Firefox for Android that asks before opening a link in an external application could be bypassed | The prompt in Firefox for Android that asks before opening a link in an external application could be bypassed |
Thu, 03 Jul 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google android Mozilla Mozilla firefox |
|
| CPEs | cpe:2.3:a:mozilla:firefox:*:*:*:*:-:*:*:* cpe:2.3:o:google:android:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Google
Google android Mozilla Mozilla firefox |
Thu, 26 Jun 2025 00:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | firefox: The prompt in Firefox for Android that asks before opening a link in an external application could be bypassed | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Wed, 25 Jun 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-285 | |
| Metrics |
cvssV3_1
|
Tue, 24 Jun 2025 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | When a link can be opened in an external application, Firefox for Android will, by default, prompt the user before doing so. An attacker could have bypassed this prompt, potentially exposing the user to security vulnerabilities or privacy leaks in external applications. *This bug only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox < 140. | |
| References |
|
Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2025-10-30T16:13:28.180Z
Reserved: 2025-06-20T14:51:36.769Z
Link: CVE-2025-6431
Updated: 2025-06-25T12:33:59.279Z
Status : Analyzed
Published: 2025-06-24T13:15:24.103
Modified: 2025-07-03T16:04:21.163
Link: CVE-2025-6431
OpenCVE Enrichment
Updated: 2025-07-06T22:16:30Z
EUVD