The executable file warning was not presented when downloading .xrm-ms files.  
*Note: This issue only affected Windows operating systems. Other operating systems are unaffected.* This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 115.10.
                
            Metrics
Affected Vendors & Products
References
        History
                    Fri, 28 Mar 2025 19:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-434 | |
| Metrics | ssvc 
 | 
Tue, 21 Jan 2025 17:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Mozilla Mozilla firefox Mozilla thunderbird | |
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:mozilla:firefox:*:*:*:*:-:*:*:* cpe:2.3:a:mozilla:firefox:*:*:*:*:esr:*:*:* cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:* | |
| Vendors & Products | Mozilla Mozilla firefox Mozilla thunderbird | |
| Metrics | cvssV3_1 
 | cvssV3_1 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: mozilla
Published: 2024-04-16T15:14:08.950Z
Updated: 2025-08-22T03:55:42.389Z
Reserved: 2024-04-15T20:27:02.136Z
Link: CVE-2024-3863
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-01T20:26:57.123Z
 NVD
                        NVD
                    Status : Modified
Published: 2024-04-16T16:15:08.870
Modified: 2025-03-28T19:15:22.650
Link: CVE-2024-3863
 Redhat
                        Redhat