Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 427

nvd логотип

CVE-2018-5131

около 8 лет назад

Under certain circumstances the "fetch()" API can return transient local copies of resources that were sent with a "no-store" or "no-cache" cache header instead of downloading a copy from the network as it should. This can result in previously stored, locally cached data of a website being accessible to users if they share a common profile while browsing. This vulnerability affects Firefox ESR < 52.7 and Firefox < 59.

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2018-5131

около 8 лет назад

Under certain circumstances the "fetch()" API can return transient loc ...

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2018-5130

около 8 лет назад

When packets with a mismatched RTP payload type are sent in WebRTC connections, in some circumstances a potentially exploitable crash is triggered. This vulnerability affects Firefox ESR < 52.7 and Firefox < 59.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2018-5130

около 8 лет назад

When packets with a mismatched RTP payload type are sent in WebRTC con ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2018-5129

около 8 лет назад

A lack of parameter validation on IPC messages results in a potential out-of-bounds write through malformed IPC messages. This can potentially allow for sandbox escape through memory corruption in the parent process. This vulnerability affects Thunderbird < 52.7, Firefox ESR < 52.7, and Firefox < 59.

CVSS3: 8.6
EPSS: Низкий
debian логотип

CVE-2018-5129

около 8 лет назад

A lack of parameter validation on IPC messages results in a potential ...

CVSS3: 8.6
EPSS: Низкий
nvd логотип

CVE-2018-5128

около 8 лет назад

A use-after-free vulnerability can occur when manipulating elements, events, and selection ranges during editor operations. This results in a potentially exploitable crash. This vulnerability affects Firefox < 59.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2018-5128

около 8 лет назад

A use-after-free vulnerability can occur when manipulating elements, e ...

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2018-5127

около 8 лет назад

A buffer overflow can occur when manipulating the SVG "animatedPathSegList" through script. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.7, Firefox ESR < 52.7, and Firefox < 59.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2018-5127

около 8 лет назад

A buffer overflow can occur when manipulating the SVG "animatedPathSeg ...

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2018-5131

Under certain circumstances the "fetch()" API can return transient local copies of resources that were sent with a "no-store" or "no-cache" cache header instead of downloading a copy from the network as it should. This can result in previously stored, locally cached data of a website being accessible to users if they share a common profile while browsing. This vulnerability affects Firefox ESR < 52.7 and Firefox < 59.

CVSS3: 5.9
2%
Низкий
около 8 лет назад
debian логотип
CVE-2018-5131

Under certain circumstances the "fetch()" API can return transient loc ...

CVSS3: 5.9
2%
Низкий
около 8 лет назад
nvd логотип
CVE-2018-5130

When packets with a mismatched RTP payload type are sent in WebRTC connections, in some circumstances a potentially exploitable crash is triggered. This vulnerability affects Firefox ESR < 52.7 and Firefox < 59.

CVSS3: 8.8
2%
Низкий
около 8 лет назад
debian логотип
CVE-2018-5130

When packets with a mismatched RTP payload type are sent in WebRTC con ...

CVSS3: 8.8
2%
Низкий
около 8 лет назад
nvd логотип
CVE-2018-5129

A lack of parameter validation on IPC messages results in a potential out-of-bounds write through malformed IPC messages. This can potentially allow for sandbox escape through memory corruption in the parent process. This vulnerability affects Thunderbird < 52.7, Firefox ESR < 52.7, and Firefox < 59.

CVSS3: 8.6
3%
Низкий
около 8 лет назад
debian логотип
CVE-2018-5129

A lack of parameter validation on IPC messages results in a potential ...

CVSS3: 8.6
3%
Низкий
около 8 лет назад
nvd логотип
CVE-2018-5128

A use-after-free vulnerability can occur when manipulating elements, events, and selection ranges during editor operations. This results in a potentially exploitable crash. This vulnerability affects Firefox < 59.

CVSS3: 9.8
2%
Низкий
около 8 лет назад
debian логотип
CVE-2018-5128

A use-after-free vulnerability can occur when manipulating elements, e ...

CVSS3: 9.8
2%
Низкий
около 8 лет назад
nvd логотип
CVE-2018-5127

A buffer overflow can occur when manipulating the SVG "animatedPathSegList" through script. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.7, Firefox ESR < 52.7, and Firefox < 59.

CVSS3: 8.8
8%
Низкий
около 8 лет назад
debian логотип
CVE-2018-5127

A buffer overflow can occur when manipulating the SVG "animatedPathSeg ...

CVSS3: 8.8
8%
Низкий
около 8 лет назад

Уязвимостей на страницу


Поделиться