cbcvebase.
CVE-2025-54144
published 2025-08-19

CVE-2025-54144: The URL scheme used by Firefox to facilitate searching of text queries could incorrectly allow attackers to open arbitrary website URLs or internal pages if a…

medium5.4CVSS 3.1
AVNACLPRNUIRSUCLILAN
The URL scheme used by Firefox to facilitate searching of text queries could incorrectly allow attackers to open arbitrary website URLs or internal pages if a user was tricked into clicking a link. This vulnerability was fixed in Firefox for iOS 141.

Affected

2 ranges
VendorProductVersion rangeFixed in
mozillafirefox< 141.0141.0
mozillafirefox

CVSS provenance

nvdv3.15.4MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
osv5.4MEDIUM