← CVE Tracker
9.1CRITICAL
CVE-2025-6427 — An attacker was able to bypass the `connect-src` directive of a Content Security Policy by manipulating…
Mozilla · Firefox · Published 24 Jun 2025 · Modified 30 Sept 2026
Mozilla · Firefox · Published 24 Jun 2025 · Modified 30 Sept 2026