Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 379
CVE-2016-9074
An existing mitigation of timing side-channel attacks is insufficient in some circumstances. This issue is addressed in Network Security Services (NSS) 3.26.1. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.
CVE-2016-9074
An existing mitigation of timing side-channel attacks is insufficient ...
CVE-2016-9073
WebExtensions can bypass security checks to load privileged URLs and potentially escape the WebExtension sandbox. This vulnerability affects Firefox < 50.
CVE-2016-9073
WebExtensions can bypass security checks to load privileged URLs and p ...
CVE-2016-9072
When a new Firefox profile is created on 64-bit Windows installations, the sandbox for 64-bit NPAPI plugins is not enabled by default. Note: This issue only affects 64-bit Windows. 32-bit Windows and other operating systems are unaffected. This vulnerability affects Firefox < 50.
CVE-2016-9072
When a new Firefox profile is created on 64-bit Windows installations, ...
CVE-2016-9071
Content Security Policy combined with HTTP to HTTPS redirection can be used by malicious server to verify whether a known site is within a user's browser history. This vulnerability affects Firefox < 50.
CVE-2016-9071
Content Security Policy combined with HTTP to HTTPS redirection can be ...
CVE-2016-9070
A maliciously crafted page loaded to the sidebar through a bookmark can reference a privileged chrome window and engage in limited JavaScript operations violating cross-origin protections. This vulnerability affects Firefox < 50.
CVE-2016-9070
A maliciously crafted page loaded to the sidebar through a bookmark ca ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2016-9074 An existing mitigation of timing side-channel attacks is insufficient in some circumstances. This issue is addressed in Network Security Services (NSS) 3.26.1. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50. | CVSS3: 5.9 | 2% Низкий | около 8 лет назад | |
CVE-2016-9074 An existing mitigation of timing side-channel attacks is insufficient ... | CVSS3: 5.9 | 2% Низкий | около 8 лет назад | |
CVE-2016-9073 WebExtensions can bypass security checks to load privileged URLs and potentially escape the WebExtension sandbox. This vulnerability affects Firefox < 50. | CVSS3: 7.5 | 2% Низкий | около 8 лет назад | |
CVE-2016-9073 WebExtensions can bypass security checks to load privileged URLs and p ... | CVSS3: 7.5 | 2% Низкий | около 8 лет назад | |
CVE-2016-9072 When a new Firefox profile is created on 64-bit Windows installations, the sandbox for 64-bit NPAPI plugins is not enabled by default. Note: This issue only affects 64-bit Windows. 32-bit Windows and other operating systems are unaffected. This vulnerability affects Firefox < 50. | CVSS3: 7.5 | 1% Низкий | около 8 лет назад | |
CVE-2016-9072 When a new Firefox profile is created on 64-bit Windows installations, ... | CVSS3: 7.5 | 1% Низкий | около 8 лет назад | |
CVE-2016-9071 Content Security Policy combined with HTTP to HTTPS redirection can be used by malicious server to verify whether a known site is within a user's browser history. This vulnerability affects Firefox < 50. | CVSS3: 5.3 | 2% Низкий | около 8 лет назад | |
CVE-2016-9071 Content Security Policy combined with HTTP to HTTPS redirection can be ... | CVSS3: 5.3 | 2% Низкий | около 8 лет назад | |
CVE-2016-9070 A maliciously crafted page loaded to the sidebar through a bookmark can reference a privileged chrome window and engage in limited JavaScript operations violating cross-origin protections. This vulnerability affects Firefox < 50. | CVSS3: 8 | 2% Низкий | около 8 лет назад | |
CVE-2016-9070 A maliciously crafted page loaded to the sidebar through a bookmark ca ... | CVSS3: 8 | 2% Низкий | около 8 лет назад |
Уязвимостей на страницу