Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 379
CVE-2016-9063
An integer overflow during the parsing of XML using the Expat library. This vulnerability affects Firefox < 50.
CVE-2016-9063
An integer overflow during the parsing of XML using the Expat library. ...
CVE-2016-9062
Private browsing mode leaves metadata information, such as URLs, for sites visited in "browser.db" and "browser.db-wal" files within the Firefox profile after the mode is exited. Note: This issue only affects Firefox for Android. Other versions and operating systems are unaffected. This vulnerability affects Firefox < 50.
CVE-2016-9062
Private browsing mode leaves metadata information, such as URLs, for s ...
CVE-2016-9061
A previously installed malicious Android application which defines a specific signature-level permissions used by Firefox can access API keys meant for Firefox only. Note: This issue only affects Firefox for Android. Other versions and operating systems are unaffected. This vulnerability affects Firefox < 50.
CVE-2016-9061
A previously installed malicious Android application which defines a s ...
CVE-2016-5299
A previously installed malicious Android application with same signature-level permissions as Firefox can intercept AuthTokens meant for Firefox only. Note: This issue only affects Firefox for Android. Other versions and operating systems are unaffected. This vulnerability affects Firefox < 50.
CVE-2016-5299
A previously installed malicious Android application with same signatu ...
CVE-2016-5298
A mechanism where disruption of the loading of a new web page can cause the previous page's favicon and SSL indicator to not be reset when the new page is loaded. Note: this issue only affects Firefox for Android. Desktop Firefox is unaffected. This vulnerability affects Firefox < 50.
CVE-2016-5298
A mechanism where disruption of the loading of a new web page can caus ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2016-9063 An integer overflow during the parsing of XML using the Expat library. This vulnerability affects Firefox < 50. | CVSS3: 9.8 | 5% Низкий | около 8 лет назад | |
CVE-2016-9063 An integer overflow during the parsing of XML using the Expat library. ... | CVSS3: 9.8 | 5% Низкий | около 8 лет назад | |
CVE-2016-9062 Private browsing mode leaves metadata information, such as URLs, for sites visited in "browser.db" and "browser.db-wal" files within the Firefox profile after the mode is exited. Note: This issue only affects Firefox for Android. Other versions and operating systems are unaffected. This vulnerability affects Firefox < 50. | CVSS3: 3.3 | 0% Низкий | около 8 лет назад | |
CVE-2016-9062 Private browsing mode leaves metadata information, such as URLs, for s ... | CVSS3: 3.3 | 0% Низкий | около 8 лет назад | |
CVE-2016-9061 A previously installed malicious Android application which defines a specific signature-level permissions used by Firefox can access API keys meant for Firefox only. Note: This issue only affects Firefox for Android. Other versions and operating systems are unaffected. This vulnerability affects Firefox < 50. | CVSS3: 7.5 | 2% Низкий | около 8 лет назад | |
CVE-2016-9061 A previously installed malicious Android application which defines a s ... | CVSS3: 7.5 | 2% Низкий | около 8 лет назад | |
CVE-2016-5299 A previously installed malicious Android application with same signature-level permissions as Firefox can intercept AuthTokens meant for Firefox only. Note: This issue only affects Firefox for Android. Other versions and operating systems are unaffected. This vulnerability affects Firefox < 50. | CVSS3: 7.5 | 2% Низкий | около 8 лет назад | |
CVE-2016-5299 A previously installed malicious Android application with same signatu ... | CVSS3: 7.5 | 2% Низкий | около 8 лет назад | |
CVE-2016-5298 A mechanism where disruption of the loading of a new web page can cause the previous page's favicon and SSL indicator to not be reset when the new page is loaded. Note: this issue only affects Firefox for Android. Desktop Firefox is unaffected. This vulnerability affects Firefox < 50. | CVSS3: 6.5 | 1% Низкий | около 8 лет назад | |
CVE-2016-5298 A mechanism where disruption of the loading of a new web page can caus ... | CVSS3: 6.5 | 1% Низкий | около 8 лет назад |
Уязвимостей на страницу