🦊 Mozilla Foundation fixed CVE-2025-6430, discovered by our researcher Daniil Satyaev!
This vulnerability allows the Content-Disposition: attachment header to be ignored if the page is opened using or , resulting in files being displayed instead of downloaded.
This vulnerability allows the Content-Disposition: attachment header to be ignored if the page is opened using or , resulting in files being displayed instead of downloaded.