CVE-2025-3859

MEDIUM WAF: Medium
CVSS 6.1 Published: 2025-04-30
CWE-601

Websites directing users to long URLs that caused eliding to occur in the location view could leverage the truncating behavior to potentially trick users into thinking they were on a different webpage This vulnerability affects Focus < 138.

WAF Coverage Analysis

Open Redirect Medium WAF Coverage

OWASP: A01:2021 Broken Access Control

941xxx - XSS / XXE

Affected Software

VendorProductVersion
mozillafirefox_focusup to 138.0

References

Back to CVE Database