CVE-2024-3863: Mozilla: Download Protections were bypassed by .xrm-ms files on Windows

Severity: Critical

CVSS Score: 9.8

The executable file warning was not presented when downloading .xrm-ms files. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.* This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 115.10.