Files
CVEs-PoC/2025/CVE-2025-3033.md
T
2025-09-29 21:09:30 +02:00

934 B

CVE-2025-3033

Description

After selecting a malicious Windows .url shortcut from the local filesystem, an unexpected file could be uploaded. This bug only affects Firefox on Windows. Other operating systems are unaffected. This vulnerability affects Firefox < 137 and Thunderbird < 137.

POC

Reference

Github