Thursday, February 13, 2025
CISA Exploit ListCybersecurityWeb Browsers

Mozilla Firefox Zero-Day Actively Exploited, Patch Released

by Justin Erickson

by Justin Erickson

Mozilla has issued a critical patch for CVE-2024-9680, a zero-day vulnerability (9.8 CVSS) in Firefox’s Animation Timeline feature. This ‘use-after-free’ vulnerability allows remote code execution and has been actively exploited in the wild. All users are urged to update to the latest version of Firefox to mitigate the risk. The vulnerability highlights the importance of regular browser updates to prevent exploitation.

Third-Party references:

Click the links below to learn more details. (Opens in a new tab/window.)