{"id":"CGA-pfjx-qmmx-fwx4","modified":"2026-09-07T02:04:20.544329858Z","published":"2026-01-29T00:47:58.388954Z","withdrawn":"2026-09-07T02:04:20.544329651Z","related":["CVE-2025-1009","GHSA-v9m4-7h7v-vqrf"],"affected":[{"package":{"name":"firefox","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/firefox"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"135.0-r0"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-pfjx-qmmx-fwx4.json"}},{"package":{"name":"firefox-esr","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/firefox-esr"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"128.7.0-r0"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-pfjx-qmmx-fwx4.json"}},{"package":{"name":"firefox","ecosystem":"Wolfi","purl":"pkg:apk/wolfi/firefox"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"135.0-r0"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-pfjx-qmmx-fwx4.json"}}],"schema_version":"1.7.3"}