LibreWolf是LibreWolf开源的一个以Firefox为基础的网页浏览器。 LibreWolf 143.0.4-1及之前版本存在代码问题漏洞,该漏洞源于文件assets/setup.nsi中未知函数的搜索路径不受控制,可能导致本地攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | LibreWolf | 143.0.4-1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2025-11938 | 5.6 MEDIUM | ChurchCRM setup.php deserialization |
| CVE-2025-11939 | 4.7 MEDIUM | ChurchCRM Backup Restore RestoreJob.php path traversal |
| CVE-2025-11947 | 4.5 MEDIUM | bftpd Configuration File options.c expand_groups heap-based overflow |
No comments yet