{
    "document": {
        "category": "csaf_base",
        "csaf_version": "2.0",
        "distribution": {
            "tlp": {
                "label": "WHITE"
            }
        },
        "lang": "en",
        "notes": [
            {
                "category": "legal_disclaimer",
                "text": "The Netherlands Cyber Security Center (henceforth: NCSC-NL) maintains this portal to enhance access to its information and vulnerabilities. The use of this information is subject to the following terms and conditions:\n\nThe vulnerabilities disclosed in this portal are gathered by NCSC-NL from a variety of open sources, which the user can retrieve from other platforms. NCSC-NL makes every reasonable effort to ensure that the content of this portal is kept up to date, and that it is accurate and complete. Nevertheless, NCSC-NL cannot entirely rule out the possibility of errors, and therefore cannot give any warranty in respect of its completeness, accuracy or real-time keeping up-to-date. NCSC-NL does not control nor guarantee the accuracy, relevance, timeliness or completeness of information obtained from these external sources. The vulnerabilities disclosed in this portal are intended solely for the convenience of professional parties to take appropriate measures to manage the risks posed to the cybersecurity. No rights can be derived from the information provided therein.\n\nNCSC-NL and the Kingdom of the Netherlands assume no legal liability or responsibility for any damage resulting from either the use or inability of use of the vulnerabilities disclosed in this portal. This includes damage resulting from the inaccuracy of incompleteness of the information contained in it.\nThe information on this page is subject to Dutch law. All disputes related to or arising from the use of this portal regarding the disclosure of vulnerabilities will be submitted to the competent court in The Hague. This choice of means also applies to the court in summary proceedings."
            }
        ],
        "publisher": {
            "category": "coordinator",
            "contact_details": "cert@ncsc.nl",
            "name": "National Cyber Security Centre",
            "namespace": "https://www.ncsc.nl/"
        },
        "title": "CVE-2025-54143",
        "tracking": {
            "current_release_date": "2026-06-24T00:26:56.340984Z",
            "generator": {
                "date": "2026-02-17T15:00:00Z",
                "engine": {
                    "name": "V.E.L.M.A",
                    "version": "1.7"
                }
            },
            "id": "CVE-2025-54143",
            "initial_release_date": "2025-07-22T18:21:36.642164Z",
            "revision_history": [
                {
                    "date": "2025-07-22T18:21:36.642164Z",
                    "number": "1",
                    "summary": "CVE created.| Source connected.| Description updated for source.| Products connected (1).| References created (1)."
                },
                {
                    "date": "2025-07-22T18:21:45.456311Z",
                    "number": "2",
                    "summary": "NCSC Score created."
                },
                {
                    "date": "2025-07-23T02:41:37.220741Z",
                    "number": "3",
                    "summary": "Source connected."
                },
                {
                    "date": "2025-07-23T02:41:40.174250Z",
                    "number": "4",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-07-23T10:05:31.108351Z",
                    "number": "5",
                    "summary": "Source created.| Products created (8).| References created (10)."
                },
                {
                    "date": "2025-07-23T10:05:34.111995Z",
                    "number": "6",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-07-23T13:01:56.780274Z",
                    "number": "7",
                    "summary": "Source connected."
                },
                {
                    "date": "2025-07-23T13:02:07.269661Z",
                    "number": "8",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-07-24T08:06:19.856105Z",
                    "number": "9",
                    "summary": "Products connected (1).| Product Identifiers created (1).| References created (2)."
                },
                {
                    "date": "2025-07-24T08:07:05.443416Z",
                    "number": "10",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-07-25T08:06:12.000230Z",
                    "number": "11",
                    "summary": "Products connected (3).| Product Identifiers created (3).| References created (4).| References updated (2)."
                },
                {
                    "date": "2025-07-25T08:06:15.473793Z",
                    "number": "12",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-07-28T09:05:16.177437Z",
                    "number": "13",
                    "summary": "Products connected (2).| Product Identifiers created (2).| References created (3).| References updated (4)."
                },
                {
                    "date": "2025-07-28T09:05:24.173159Z",
                    "number": "14",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-07-29T09:05:27.323788Z",
                    "number": "15",
                    "summary": "References created (4)."
                },
                {
                    "date": "2025-07-29T09:05:29.861748Z",
                    "number": "16",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-07-31T10:39:56.146219Z",
                    "number": "17",
                    "summary": "References created (8)."
                },
                {
                    "date": "2025-07-31T10:53:52.989436Z",
                    "number": "18",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-08-05T07:05:40.536926Z",
                    "number": "19",
                    "summary": "Products connected (1).| Product Identifiers created (1).| References created (5)."
                },
                {
                    "date": "2025-08-05T07:05:47.598620Z",
                    "number": "20",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-08-08T09:05:33.199705Z",
                    "number": "21",
                    "summary": "Products connected (2).| Product Identifiers created (2).| References created (2)."
                },
                {
                    "date": "2025-08-08T09:06:03.037606Z",
                    "number": "22",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-08-12T08:28:17.316672Z",
                    "number": "23",
                    "summary": "References created (7)."
                },
                {
                    "date": "2025-08-12T08:28:21.885525Z",
                    "number": "24",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-08-13T07:41:24.041155Z",
                    "number": "25",
                    "summary": "References created (2)."
                },
                {
                    "date": "2025-08-13T07:44:47.875262Z",
                    "number": "26",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-08-19T21:24:45.903231Z",
                    "number": "27",
                    "summary": "Source created.| Description created for source.| References created (2)."
                },
                {
                    "date": "2025-08-19T21:24:51.549395Z",
                    "number": "28",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-08-19T21:38:37.069388Z",
                    "number": "29",
                    "summary": "Source created.| Description created for source.| Products connected (1).| References created (2)."
                },
                {
                    "date": "2025-08-19T21:38:42.359772Z",
                    "number": "30",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-08-20T07:34:52.244198Z",
                    "number": "31",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-08-20T11:27:14.423722Z",
                    "number": "32",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-08-20T14:19:43.431416Z",
                    "number": "33",
                    "summary": "Source created.| EPSS created."
                },
                {
                    "date": "2025-08-20T15:38:40.681000Z",
                    "number": "34",
                    "summary": "CVSS created.| CWES updated (1)."
                },
                {
                    "date": "2025-08-20T15:38:48.433878Z",
                    "number": "35",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-08-20T16:25:02.994417Z",
                    "number": "36",
                    "summary": "CVSS created.| CWES updated (1)."
                },
                {
                    "date": "2025-08-21T19:26:45.212436Z",
                    "number": "37",
                    "summary": "Products connected (1).| Product Identifiers created (1)."
                },
                {
                    "date": "2025-08-21T19:26:46.151717Z",
                    "number": "38",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-09-09T08:14:58.938802Z",
                    "number": "39",
                    "summary": "Products connected (1).| Product Identifiers created (1).| References created (1)."
                },
                {
                    "date": "2025-11-18T09:35:36.604253Z",
                    "number": "40",
                    "summary": "Products connected (1).| Product Identifiers created (1).| References created (1)."
                },
                {
                    "date": "2025-11-18T09:35:40.303085Z",
                    "number": "41",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-12-05T09:14:32.369826Z",
                    "number": "42",
                    "summary": "References created (1)."
                },
                {
                    "date": "2025-12-05T09:14:38.720135Z",
                    "number": "43",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-12-11T12:47:59.385150Z",
                    "number": "44",
                    "summary": "References created (1)."
                },
                {
                    "date": "2025-12-11T12:48:10.429483Z",
                    "number": "45",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-01-13T19:27:47.703212Z",
                    "number": "46",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-01-15T08:15:15.256255Z",
                    "number": "47",
                    "summary": "Manual regenerated (CSAFs rebuild product/vendor naming update)."
                },
                {
                    "date": "2026-02-03T10:22:11.307332Z",
                    "number": "48",
                    "summary": "Products connected (1).| Product Identifiers created (1).| References created (1)."
                },
                {
                    "date": "2026-02-03T10:22:23.913107Z",
                    "number": "49",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-19T13:05:23.417390Z",
                    "number": "50",
                    "summary": "References created (1)."
                },
                {
                    "date": "2026-02-19T13:05:37.064750Z",
                    "number": "51",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-20T08:13:58.917477Z",
                    "number": "52",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-03-20T08:14:01.757305Z",
                    "number": "53",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-20T16:34:38.263767Z",
                    "number": "54",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (1).| Product Identifiers created (1).| References created (2).| CWES updated (1)."
                },
                {
                    "date": "2026-03-20T16:34:41.322783Z",
                    "number": "55",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-29T09:54:37.976837Z",
                    "number": "56",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-04-13T15:31:56.693262Z",
                    "number": "57",
                    "summary": "Description removed for source.| Description created for source."
                },
                {
                    "date": "2026-04-13T15:32:00.183923Z",
                    "number": "58",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-04-13T15:40:37.203471Z",
                    "number": "59",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (1).| References created (2).| CWES updated (1).| Unknown change."
                },
                {
                    "date": "2026-04-13T15:40:38.860894Z",
                    "number": "60",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-04-13T16:25:32.376891Z",
                    "number": "61",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-05-08T15:36:20.474364Z",
                    "number": "62",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-05-08T15:36:24.620414Z",
                    "number": "63",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-06-11T12:07:32.430797Z",
                    "number": "64",
                    "summary": "References created (1)."
                },
                {
                    "date": "2026-06-11T12:07:43.824961Z",
                    "number": "65",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-06-12T08:46:54.950880Z",
                    "number": "66",
                    "summary": "References created (2)."
                },
                {
                    "date": "2026-06-12T08:47:07.566354Z",
                    "number": "67",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-06-15T17:36:51.785572Z",
                    "number": "68",
                    "summary": "EPSS updated."
                },
                {
                    "date": "2026-06-15T17:36:53.104750Z",
                    "number": "69",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-06-24T00:18:37.582626Z",
                    "number": "70",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-06-24T00:18:39.011677Z",
                    "number": "71",
                    "summary": "NCSC Score updated."
                }
            ],
            "status": "interim",
            "version": "71"
        }
    },
    "product_tree": {
        "branches": [
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1330296",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:amazon:linux_2:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Amazon Linux 2"
                    }
                ],
                "category": "vendor",
                "name": "Amazon"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1295663",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:debian:debian_linux:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Debian Linux"
                    }
                ],
                "category": "vendor",
                "name": "Debian"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1317178",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:fedoraproject:fedora:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Fedora Linux"
                    }
                ],
                "category": "vendor",
                "name": "Fedora"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<141",
                                "product": {
                                    "name": "vers:unknown/<141",
                                    "product_id": "CSAFPID-2996123"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/ios <141",
                                "product": {
                                    "name": "vers:unknown/ios <141",
                                    "product_id": "CSAFPID-2996119"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Firefox"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<115.26",
                                "product": {
                                    "name": "vers:unknown/<115.26",
                                    "product_id": "CSAFPID-2996122"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<128.13",
                                "product": {
                                    "name": "vers:unknown/<128.13",
                                    "product_id": "CSAFPID-2996125"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<140.1",
                                "product": {
                                    "name": "vers:unknown/<140.1",
                                    "product_id": "CSAFPID-2996124"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Firefox ESR"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:mozilla/<141",
                                "product": {
                                    "name": "vers:mozilla/<141",
                                    "product_id": "CSAFPID-2994585"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/141|<=*",
                                "product": {
                                    "name": "vers:rpm/141|<=*",
                                    "product_id": "CSAFPID-6026890"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unspecified|<141",
                                "product": {
                                    "name": "vers:unknown/unspecified|<141",
                                    "product_id": "CSAFPID-3064219"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Firefox for iOS"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<128.13",
                                "product": {
                                    "name": "vers:unknown/<128.13",
                                    "product_id": "CSAFPID-2996121"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<140.1",
                                "product": {
                                    "name": "vers:unknown/<140.1",
                                    "product_id": "CSAFPID-2996120"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<141",
                                "product": {
                                    "name": "vers:unknown/<141",
                                    "product_id": "CSAFPID-2996118"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Thunderbird"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<141.0",
                                "product": {
                                    "name": "vers:unknown/<141.0",
                                    "product_id": "CSAFPID-3006252",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:a:mozilla:firefox:*:*:*:*:*:iphone_os:*:*"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "firefox"
                    }
                ],
                "category": "vendor",
                "name": "Mozilla"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v7",
                                "product": {
                                    "name": "vers:unknown/v7",
                                    "product_id": "CSAFPID-143582",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:xerox:freeflow_print_server:v7"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "FreeFlow Print Server"
                    }
                ],
                "category": "vendor",
                "name": "Xerox"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/11",
                                "product": {
                                    "name": "vers:unknown/11",
                                    "product_id": "CSAFPID-1192646",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:igel:os:11"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/12",
                                "product": {
                                    "name": "vers:unknown/12",
                                    "product_id": "CSAFPID-1192648",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:igel:os:12"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "OS"
                    }
                ],
                "category": "vendor",
                "name": "IGEL"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1317177",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:oracle:linux:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Oracle Linux"
                    }
                ],
                "category": "vendor",
                "name": "Oracle"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1330300",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:resf:rocky_linux:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "RESF Rocky Linux"
                    }
                ],
                "category": "vendor",
                "name": "RESF"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1317175",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux"
                    }
                ],
                "category": "vendor",
                "name": "Red Hat"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1317176",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:suse:opensuse:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "SUSE openSUSE"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1317174",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:suse:suse_linux:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "SuSE Linux"
                    }
                ],
                "category": "vendor",
                "name": "SUSE"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1330299",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:canonical:ubuntu_linux:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Ubuntu Linux"
                    }
                ],
                "category": "vendor",
                "name": "Ubuntu"
            }
        ]
    },
    "vulnerabilities": [
        {
            "cve": "CVE-2025-54143",
            "notes": [
                {
                    "category": "description",
                    "text": "Sandboxed iframes on webpages could potentially allow downloads to the device, bypassing the expected sandbox restrictions declared on the parent page. This vulnerability affects Firefox for iOS < 141.Sandboxed iframes could allow local downloads despite sandbox restrictions",
                    "title": "mozilla - https://www.mozilla.org/security/advisories/mfsa2025-60/"
                },
                {
                    "category": "description",
                    "text": "Sandboxed iframes on webpages could potentially allow downloads to the device, bypassing the expected sandbox restrictions declared on the parent page This vulnerability affects Firefox for iOS < 141.",
                    "title": "nvd - https://nvd.nist.gov/vuln/detail/CVE-2025-54143"
                },
                {
                    "category": "description",
                    "text": "Sandboxed iframes on webpages could potentially allow downloads to the device, bypassing the expected sandbox restrictions declared on the parent page This vulnerability affects Firefox for iOS < 141.",
                    "title": "cveprojectv5 - https://www.cve.org/CVERecord?id=CVE-2025-54143"
                },
                {
                    "category": "description",
                    "text": "Sandboxed iframes on webpages could potentially allow downloads to the device, bypassing the expected sandbox restrictions declared on the parent page. This vulnerability was fixed in Firefox for iOS 141.",
                    "title": "nvd - https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2025-54143"
                },
                {
                    "category": "description",
                    "text": "Sandboxed iframes on webpages could potentially allow downloads to the device, bypassing the expected sandbox restrictions declared on the parent page. This vulnerability was fixed in Firefox for iOS 141.",
                    "title": "cveprojectv5 - https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2025/54xxx/CVE-2025-54143.json"
                },
                {
                    "category": "other",
                    "text": "0.00449",
                    "title": "EPSS"
                },
                {
                    "category": "other",
                    "text": "5.9",
                    "title": "NCSC Score"
                },
                {
                    "category": "other",
                    "text": "Is related to (a version of) an uncommon product, There is product data available from source Mozilla, There is product data available from a private source, There is product data available from source Certbundde, There is cvss data available from a private source",
                    "title": "NCSC Score top increasing factors"
                },
                {
                    "category": "other",
                    "text": "Is related to (a version of) product Suse Opensuse, Is related to an uncommon product vendor, Is related to a product by vendor Amazon",
                    "title": "NCSC Score top decreasing factors"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-2994585",
                    "CSAFPID-2996118",
                    "CSAFPID-2996119",
                    "CSAFPID-2996120",
                    "CSAFPID-2996121",
                    "CSAFPID-2996122",
                    "CSAFPID-2996123",
                    "CSAFPID-2996124",
                    "CSAFPID-2996125",
                    "CSAFPID-1295663",
                    "CSAFPID-1317175",
                    "CSAFPID-1317177",
                    "CSAFPID-1317178",
                    "CSAFPID-1317174",
                    "CSAFPID-1317176",
                    "CSAFPID-1330296",
                    "CSAFPID-1192646",
                    "CSAFPID-1192648",
                    "CSAFPID-3064219",
                    "CSAFPID-3006252",
                    "CSAFPID-1330300",
                    "CSAFPID-143582",
                    "CSAFPID-1330299"
                ],
                "known_not_affected": [
                    "CSAFPID-6026890"
                ]
            },
            "references": [
                {
                    "category": "external",
                    "summary": "Source - mozilla",
                    "url": "https://www.mozilla.org/security/advisories/mfsa2025-60/"
                },
                {
                    "category": "external",
                    "summary": "Source raw - mozilla",
                    "url": "https://www.mozilla.org/en-us/security/advisories/cve-feed.json"
                },
                {
                    "category": "external",
                    "summary": "Source - hkcert",
                    "url": "https://www.hkcert.org/security-bulletin/mozilla-products-multiple-vulnerabilities_20250723"
                },
                {
                    "category": "external",
                    "summary": "Source - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-1623.json"
                },
                {
                    "category": "external",
                    "summary": "Source - ncscclear",
                    "url": "https://advisories.ncsc.nl/advisory?id=NCSC-2025-0235"
                },
                {
                    "category": "external",
                    "summary": "Source - nvd",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54143"
                },
                {
                    "category": "external",
                    "summary": "Source raw - nvd",
                    "url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2025-54143"
                },
                {
                    "category": "external",
                    "summary": "Source - cveprojectv5",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2025-54143"
                },
                {
                    "category": "external",
                    "summary": "Source raw - cveprojectv5",
                    "url": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2025/54xxx/CVE-2025-54143.json"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?cve=CVE-2025-54143"
                },
                {
                    "category": "external",
                    "summary": "Source raw - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=0"
                },
                {
                    "category": "external",
                    "summary": "Source - ncscinternal",
                    "url": "https://www.ncsc.nl/internal/CVE-2025-54143"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=20000"
                },
                {
                    "category": "external",
                    "summary": "Source - nvd",
                    "url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2025-54143"
                },
                {
                    "category": "external",
                    "summary": "Source - cveprojectv5",
                    "url": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2025/54xxx/CVE-2025-54143.json"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=30000"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=40000"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-1623.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-1623"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2025-56/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2025-57/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2025-58/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2025-59/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2025-60/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2025-61/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2025-62/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2025-63/"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; mozilla; nvd",
                    "url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1912671"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.debian.org/debian-security-announce/2025/msg00128.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.debian.org/debian-lts-announce/2025/07/msg00013.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://bodhi.fedoraproject.org/updates/FEDORA-2025-fd004806e3"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://bodhi.fedoraproject.org/updates/FEDORA-2025-a9d97ce15f"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://linux.oracle.com/errata/ELSA-2025-11748.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://linux.oracle.com/errata/ELSA-2025-11747.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:11748"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:11747"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.debian.org/debian-lts-announce/2025/07/msg00016.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/DA7ZGUOLVQXQMWSWUESWPUYAFMZZ2U7J/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/GNWQV6MY2WERSSM6ZSWO2N3POFDWCA25/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:11797"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/NWKNKZE6DS7APQ2PDTSAYNYQVHGVVICE/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.suse.com/pipermail/sle-security-updates/2025-July/021975.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://security-tracker.debian.org/tracker/DSA-5966-1"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.suse.com/pipermail/sle-security-updates/2025-July/021976.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:12044"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:12045"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:12046"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:12188"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:12187"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:12278"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://linux.oracle.com/errata/ELSA-2025-12187.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:12302"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/RSKG6GKFXOPEJZV5OQ64EHYPTRPJXTX7/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://linux.oracle.com/errata/ELSA-2025-12188.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://linux.oracle.com/errata/ELSA-2025-11797.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:12353"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:12360"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:12361"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://alas.aws.amazon.com/AL2/ALAS2-2025-2946.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://alas.aws.amazon.com/AL2/ALAS2FIREFOX-2025-041.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://kb.igel.com/en/security-safety/current/isn-2025-30-firefox-esr-vulnerabilities"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "http://linux.oracle.com/errata/ELSA-2025-12278.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:13647"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:13648"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:13650"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:13645"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:13646"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:13649"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:13651"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2025:13676"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://linux.oracle.com/errata/ELSA-2025-13676.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; nvd",
                    "url": "https://www.mozilla.org/security/advisories/mfsa2025-60/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://errata.build.resf.org/RLSA-2025:13676"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://security.business.xerox.com/wp-content/uploads/2025/11/Xerox-Security-Bulletin-XRX25-018-Xerox-FreeFlow-Print-Server-v7.pdf"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/VBYQPRJWYXE67WXE2IFQQ3JLIM5XGX2W/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.suse.com/pipermail/sle-security-updates/2025-December/023500.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://ubuntu.com/security/notices/USN-7991-1"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://linux.oracle.com/errata/ELSA-2026-2231.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://linux.oracle.com/errata/ELSA-2026-3984.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://linux.oracle.com/errata/ELSA-2026-13977.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://linux.oracle.com/errata/ELSA-2026-8427.html"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                        "baseScore": 9.8,
                        "baseSeverity": "CRITICAL"
                    },
                    "products": [
                        "CSAFPID-1192646",
                        "CSAFPID-1192648",
                        "CSAFPID-1295663",
                        "CSAFPID-1317174",
                        "CSAFPID-1317175",
                        "CSAFPID-1317176",
                        "CSAFPID-1317177",
                        "CSAFPID-1317178",
                        "CSAFPID-1330296",
                        "CSAFPID-1330299",
                        "CSAFPID-1330300",
                        "CSAFPID-143582",
                        "CSAFPID-2994585",
                        "CSAFPID-2996118",
                        "CSAFPID-2996119",
                        "CSAFPID-2996120",
                        "CSAFPID-2996121",
                        "CSAFPID-2996122",
                        "CSAFPID-2996123",
                        "CSAFPID-2996124",
                        "CSAFPID-2996125",
                        "CSAFPID-3006252",
                        "CSAFPID-3064219"
                    ]
                }
            ],
            "title": "CVE-2025-54143"
        }
    ]
}