CVE-2025-1010 | Mozilla Firefox up to 128.6/134.x Custom Highlight API use after free (Nessus ID 214965)
A vulnerability was found in Mozilla Firefox up to 128.6/134.x and classified as critical. The impacted element is an unknown function of the component Custom Highlight API. Such manipulation leads to use after free.
This vulnerability is referenced as CVE-2025-1010. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.