If a user visited a webpage with an invalid TLS certificate, and granted an exception, the webpage was able to provide a WebAuthn challenge that the user would be prompted to complete. This is in violation of the WebAuthN spec which requires "a secure transport established without errors". This vulnerability affects Firefox < 140.
The product does not validate, or incorrectly validates, a certificate.
Link | Tags |
---|---|
https://bugzilla.mozilla.org/show_bug.cgi?id=1954033 | permissions required |
https://www.mozilla.org/security/advisories/mfsa2025-51/ | vendor advisory |