Mozilla FireFox Security Update – 02 November 2025

Mozilla has released an updated Firefox version 144.0.2 to address critical vulnerability

The addressed vulnerability could allow the attacker to execute arbitrary code and gain access to the affected system.

Mozilla Firefox Use-after-free in WebGPU internals triggered from a compromised child process (CVE-2025-12380):

  • CVSS: 9.8
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: None
  • Consequences: Gain Access
Vulnerabilities

CVE-2025-12380

Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Mozilla Firefox Security Advisory

References