Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

nvd логотип

CVE-2016-2831

около 10 лет назад

Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 do not ensure that the user approves the fullscreen and pointerlock settings, which allows remote attackers to cause a denial of service (UI outage), or conduct clickjacking or spoofing attacks, via a crafted web site.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2016-2829

около 10 лет назад

Mozilla Firefox before 47.0 allows remote attackers to spoof permissio ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2016-2829

около 10 лет назад

Mozilla Firefox before 47.0 allows remote attackers to spoof permission notifications via a crafted web site that rapidly triggers permission requests, as demonstrated by the microphone permission or the geolocation permission.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2016-2828

около 10 лет назад

Use-after-free vulnerability in Mozilla Firefox before 47.0 and Firefo ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2016-2828

около 10 лет назад

Use-after-free vulnerability in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allows remote attackers to execute arbitrary code via WebGL content that triggers texture access after destruction of the texture's recycle pool.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2016-2826

около 10 лет назад

The maintenance service in Mozilla Firefox before 47.0 and Firefox ESR ...

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2016-2826

около 10 лет назад

The maintenance service in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 on Windows does not prevent MAR extracted-file modification during updater execution, which might allow local users to gain privileges via a Trojan horse file.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2016-2825

около 10 лет назад

Mozilla Firefox before 47.0 allows remote attackers to bypass the Same ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2016-2825

около 10 лет назад

Mozilla Firefox before 47.0 allows remote attackers to bypass the Same Origin Policy and modify the location.host property via an invalid data: URL.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2016-2824

около 10 лет назад

The TSymbolTableLevel class in ANGLE, as used in Mozilla Firefox befor ...

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2016-2831

Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 do not ensure that the user approves the fullscreen and pointerlock settings, which allows remote attackers to cause a denial of service (UI outage), or conduct clickjacking or spoofing attacks, via a crafted web site.

CVSS3: 8.8
1%
Низкий
около 10 лет назад
debian логотип
CVE-2016-2829

Mozilla Firefox before 47.0 allows remote attackers to spoof permissio ...

CVSS3: 6.5
1%
Низкий
около 10 лет назад
nvd логотип
CVE-2016-2829

Mozilla Firefox before 47.0 allows remote attackers to spoof permission notifications via a crafted web site that rapidly triggers permission requests, as demonstrated by the microphone permission or the geolocation permission.

CVSS3: 6.5
1%
Низкий
около 10 лет назад
debian логотип
CVE-2016-2828

Use-after-free vulnerability in Mozilla Firefox before 47.0 and Firefo ...

CVSS3: 8.8
3%
Низкий
около 10 лет назад
nvd логотип
CVE-2016-2828

Use-after-free vulnerability in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allows remote attackers to execute arbitrary code via WebGL content that triggers texture access after destruction of the texture's recycle pool.

CVSS3: 8.8
3%
Низкий
около 10 лет назад
debian логотип
CVE-2016-2826

The maintenance service in Mozilla Firefox before 47.0 and Firefox ESR ...

CVSS3: 7.8
0%
Низкий
около 10 лет назад
nvd логотип
CVE-2016-2826

The maintenance service in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 on Windows does not prevent MAR extracted-file modification during updater execution, which might allow local users to gain privileges via a Trojan horse file.

CVSS3: 7.8
0%
Низкий
около 10 лет назад
debian логотип
CVE-2016-2825

Mozilla Firefox before 47.0 allows remote attackers to bypass the Same ...

CVSS3: 6.5
2%
Низкий
около 10 лет назад
nvd логотип
CVE-2016-2825

Mozilla Firefox before 47.0 allows remote attackers to bypass the Same Origin Policy and modify the location.host property via an invalid data: URL.

CVSS3: 6.5
2%
Низкий
около 10 лет назад
debian логотип
CVE-2016-2824

The TSymbolTableLevel class in ANGLE, as used in Mozilla Firefox befor ...

CVSS3: 8.8
2%
Низкий
около 10 лет назад

Уязвимостей на страницу


Поделиться