CERT-In Asks Mozilla Firefox Users to Install Browser Updates to Remain Safe From Security Vulnerabilities

Mozilla has patched several flaws affecting its Firefox and Thunderbird software that could allow an attacker to remotely execute malicious code.

Advertisement
Written by Sucharita Ganguly, Edited by David Delima | Updated: 21 October 2025 19:59 IST
Highlights
  • Mozilla fixes high-severity flaws in Firefox and Thunderbird
  • Vulnerabilities could allow code execution or data access
  • CERT-In urges immediate updates to prevent system compromise

Users are advised to install the latest security updates on their devices

Photo Credit: Pexels/ Sora Shimazaki

Mozilla has patched multiple security vulnerabilities across its products, according to an advisory issued by the Indian Computer Emergency Response Team (CERT-In). The “high” severity security flaws could allow attackers to execute malicious code using vulnerabilities on older versions of Firefox. The vulnerabilities impact Firefox, Firefox Extended Support Release (ESR), and Mozilla's Thunderbird email client. CERT-In has urged individuals and organisations to update immediately to the latest versions to remain protected against potential data theft, system compromise, and information disclosure.

CERT-in Says Vulnerabilities Affect Multiple Mozilla Products

The affected software includes Mozilla Firefox 144, Firefox ESR 140.4, and Mozilla Thunderbird 144, as well as older versions, the nodal cybersecurity agency states in its Vulnerability Note CIVN-2025-0273, published on October 18. These vulnerabilities could allow unauthorised access to sensitive information, leading to potential data theft, information disclosure, or full system compromise.

Advertisement

The security flaws stem from multiple issues, including use-after-free errors, memory corruption, API misuse by web extensions, out-of-bounds reads and writes, cross-process information leaks, and improper handling of browser object properties. Some vulnerabilities also impact the Android versions of Firefox and Thunderbird, including spoofing risks and improper display of sensitive fields.

End users and organisations are urged to update Mozilla products immediately. Updating prevents attackers from accessing sensitive data or executing code. CERT-In has urged users to apply patches promptly and monitor Mozilla security advisories for future updates.

Advertisement

Mozilla has addressed these issues with a series of updates. Users are advised to install the following patches, including Firefox 144 (MFSA 2025-81), Firefox ESR 115.29 (MFSA 2025-82), Firefox ESR 140.4 (MFSA 2025-83), Thunderbird 140.4 (MFSA 2025-85), and Thunderbird 144 (MFSA 2025-84). Full details are available on Mozilla's security advisory pages, and users should update to the latest available version to remain protected from these vulnerabilities.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Google's Fitbit Air Spotted on Amazon India Ahead of Official Launch
  2. Portronics Pure Sound Pro X2 With 150W Audio Output Launched in India
  3. Samsung Galaxy Z Fold 8 Fresh Renders Leaked Online Just Ahead of Launch
  4. Samsung Galaxy Z Fold 8 Ultra Could Cost More Than Expected, Listing Suggests
  5. Moto Pad 70 Groove Launching in India on July 31: Here's What It Offers
  6. Oppo Find X10 Series Specifications Leak Online
  7. Xiaomi Power Bank 5i 20000mAh to Launch in India on This Date
  8. Here's How the Redmi Watch 6 Active, Watch 6 Lite Could Cost
  9. Samsung Galaxy A55, Galaxy A35 One UI 9 Internal Testing Begins, Leak Suggests
  10. Samsung Announces 'Back to School' Deals Across These Devices in India
  1. Dell Alienware 16X Aurora, Alienware 16 Area-51 and Alienware 18 Area-51 Launched in India: Price, Specifications
  2. Samsung Galaxy A55, Galaxy A35 One UI 9 Test Builds Reportedly Spotted Ahead of Android 17 Rollout
  3. Xiaomi Pad 9 Could Launch Soon With a Bigger Battery, Certification Listing Suggests: Expected Specifications
  4. Redmi 17 4G EPREL Certification Listing Gives an Early Look at Its Specifications
  5. Tecno Camon 50 Ultra 5G Goes on Sale in India With Dimensity 7400 Ultimate SoC: Price, Offers
  6. Redmi Watch 6 Active, Watch 6 Lite Price, Key Specifications, and Other Details Leaked Online
  7. Samsung Galaxy Z Fold 8 Fresh Renders Leaked Online Just Ahead of Galaxy Unpacked Event
  8. Samsung Galaxy Watch 9 Leak Reveals Major Chipset Upgrade Before Galaxy Unpacked
  9. Samsung Galaxy S26 FE, Galaxy Tab S12 Reportedly Spotted in Google App Listing, Hinting at Imminent Launch
  10. iQOO 16T Tipped to Feature Next-Generation MediaTek or Qualcomm Chip; Key Specifications Leak
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.