Vulnerability Database

296,137

Total vulnerabilities in the database

CVE-2025-8031

The username:password part was not correctly stripped from URLs in CSP reports potentially leaking HTTP Basic Authentication credentials. This vulnerability affects Firefox < 141, Firefox ESR < 128.13, Firefox ESR < 140.1, Thunderbird < 141, Thunderbird < 128.13, and Thunderbird < 140.1.

  • Published: Jul 22, 2025
  • Updated: Jul 23, 2025
  • CVE: CVE-2025-8031
  • Exploit:

No technical information available.

No CWE or OWASP classifications available.