CVE-2025-9180 | Mozilla Firefox up to 141 Canvas2D cross-domain policy
A vulnerability was found in Mozilla Firefox up to 141. It has been declared as problematic. Affected by this issue is some unknown functionality of the component Canvas2D. Executing manipulation can lead to permissive cross-domain policy with untrusted domains.
This vulnerability is tracked as CVE-2025-9180. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.