Files
CVEs-PoC/2025/CVE-2025-3028.md
T
2025-09-29 21:09:30 +02:00

996 B

CVE-2025-3028

Description

JavaScript code running while transforming a document with the XSLTProcessor could lead to a use-after-free. This vulnerability affects Firefox < 137, Firefox ESR < 115.22, Firefox ESR < 128.9, Thunderbird < 137, and Thunderbird < 128.9.

POC

Reference

Github