CVE-2025-4921
Firefox JavaScript Out-of-Bounds Access Vulnerability
Description
Rejected reason: Duplicate of CVE-2025-4919
INFO
Published Date :
May 17, 2025, 10:15 p.m.
Last Modified :
May 18, 2025, 8:15 p.m.
Remotely Exploit :
No
Source :
[email protected]
Solution
- Review CVE-2025-4919 for remediation steps.
- Ensure the system is updated to address the original vulnerability.
Public PoC/Exploit Available at Github
CVE-2025-4921 has a 1 public
PoC/Exploit
available at Github.
Go to the Public Exploits
tab to see the list.
We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).
CVE-2025-4921
Results are limited to the first 15 repositories due to potential performance issues.
The following list is the news that have been mention
CVE-2025-4921
vulnerability anywhere in the article.
The following table lists the changes that have been made to the
CVE-2025-4921
vulnerability over time.
Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.
-
CVE Rejected by [email protected]
May. 18, 2025
Action Type Old Value New Value -
CVE Modified by [email protected]
May. 18, 2025
Action Type Old Value New Value Changed Description An attacker was able to perform an out-of-bounds read or write on a JavaScript object by confusing array index sizes. This vulnerability affects Firefox < 138.0.4 and Firefox ESR < 128.10.1. Rejected reason: Duplicate of CVE-2025-4919 Removed Reference Mozilla Corporation: https://bugzilla.mozilla.org/show_bug.cgi?id=1966614 Removed Reference Mozilla Corporation: https://www.mozilla.org/security/advisories/mfsa2025-36/ Removed Reference Mozilla Corporation: https://www.mozilla.org/security/advisories/mfsa2025-37/ -
New CVE Received by [email protected]
May. 17, 2025
Action Type Old Value New Value Added Description An attacker was able to perform an out-of-bounds read or write on a JavaScript object by confusing array index sizes. This vulnerability affects Firefox < 138.0.4 and Firefox ESR < 128.10.1. Added Reference https://bugzilla.mozilla.org/show_bug.cgi?id=1966614 Added Reference https://www.mozilla.org/security/advisories/mfsa2025-36/ Added Reference https://www.mozilla.org/security/advisories/mfsa2025-37/