CVE-2025-10532

CVE-2025-10532: Incorrect boundary conditions in the JavaScript: GC component

Published September 16, 2025
Last update April 13, 2026

CVSS base score

What the vulnerability does

Description

Incorrect boundary conditions in the JavaScript: GC component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.

Key dates

Disclosure timeline

September 16, 2025 CVE published
April 13, 2026 Record updated