Security Advisory

CVE-2025-8033

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-07-22 20:49:27
Last updated 2026-07-29 14:59:05
Assigner mozilla
CVSS score not scored
State PUBLISHED

Description

The JavaScript engine did not handle closed generators correctly and it was possible to resume them leading to a nullptr deref. This vulnerability was fixed in Firefox 141, Firefox ESR 115.26, Firefox ESR 128.13, Firefox ESR 140.1, Thunderbird 141, Thunderbird 128.13, and Thunderbird 140.1.