Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 379

nvd логотип

CVE-2016-9068

около 8 лет назад

A use-after-free during web animations when working with timelines resulting in a potentially exploitable crash. This vulnerability affects Firefox < 50.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-9068

около 8 лет назад

A use-after-free during web animations when working with timelines res ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2016-9067

около 8 лет назад

Two use-after-free errors during DOM operations resulting in potentially exploitable crashes. This vulnerability affects Firefox < 50.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2016-9067

около 8 лет назад

Two use-after-free errors during DOM operations resulting in potential ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2016-9066

около 8 лет назад

A buffer overflow resulting in a potentially exploitable crash due to memory allocation issues when handling large amounts of incoming data. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.

CVSS3: 7.5
EPSS: Средний
debian логотип

CVE-2016-9066

около 8 лет назад

A buffer overflow resulting in a potentially exploitable crash due to ...

CVSS3: 7.5
EPSS: Средний
nvd логотип

CVE-2016-9065

около 8 лет назад

The location bar in Firefox for Android can be spoofed by forcing a user into fullscreen mode, blocking its exiting, and creating of a fake location bar without any user notification. Note: This issue only affects Firefox for Android. Other versions and operating systems are unaffected. This vulnerability affects Firefox < 50.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-9065

около 8 лет назад

The location bar in Firefox for Android can be spoofed by forcing a us ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2016-9064

около 8 лет назад

Add-on updates failed to verify that the add-on ID inside the signed package matched the ID of the add-on being updated. An attacker who could perform a man-in-the-middle attack on the user's connection to the update server and defeat the certificate pinning protection could provide a malicious signed add-on instead of a valid update. This vulnerability affects Firefox ESR < 45.5 and Firefox < 50.

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2016-9064

около 8 лет назад

Add-on updates failed to verify that the add-on ID inside the signed p ...

CVSS3: 5.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2016-9068

A use-after-free during web animations when working with timelines resulting in a potentially exploitable crash. This vulnerability affects Firefox < 50.

CVSS3: 7.5
2%
Низкий
около 8 лет назад
debian логотип
CVE-2016-9068

A use-after-free during web animations when working with timelines res ...

CVSS3: 7.5
2%
Низкий
около 8 лет назад
nvd логотип
CVE-2016-9067

Two use-after-free errors during DOM operations resulting in potentially exploitable crashes. This vulnerability affects Firefox < 50.

CVSS3: 6.5
2%
Низкий
около 8 лет назад
debian логотип
CVE-2016-9067

Two use-after-free errors during DOM operations resulting in potential ...

CVSS3: 6.5
2%
Низкий
около 8 лет назад
nvd логотип
CVE-2016-9066

A buffer overflow resulting in a potentially exploitable crash due to memory allocation issues when handling large amounts of incoming data. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.

CVSS3: 7.5
12%
Средний
около 8 лет назад
debian логотип
CVE-2016-9066

A buffer overflow resulting in a potentially exploitable crash due to ...

CVSS3: 7.5
12%
Средний
около 8 лет назад
nvd логотип
CVE-2016-9065

The location bar in Firefox for Android can be spoofed by forcing a user into fullscreen mode, blocking its exiting, and creating of a fake location bar without any user notification. Note: This issue only affects Firefox for Android. Other versions and operating systems are unaffected. This vulnerability affects Firefox < 50.

CVSS3: 7.5
2%
Низкий
около 8 лет назад
debian логотип
CVE-2016-9065

The location bar in Firefox for Android can be spoofed by forcing a us ...

CVSS3: 7.5
2%
Низкий
около 8 лет назад
nvd логотип
CVE-2016-9064

Add-on updates failed to verify that the add-on ID inside the signed package matched the ID of the add-on being updated. An attacker who could perform a man-in-the-middle attack on the user's connection to the update server and defeat the certificate pinning protection could provide a malicious signed add-on instead of a valid update. This vulnerability affects Firefox ESR < 45.5 and Firefox < 50.

CVSS3: 5.9
1%
Низкий
около 8 лет назад
debian логотип
CVE-2016-9064

Add-on updates failed to verify that the add-on ID inside the signed p ...

CVSS3: 5.9
1%
Низкий
около 8 лет назад

Уязвимостей на страницу


Поделиться