Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 337
CVE-2016-1943
Mozilla Firefox before 44.0 on Android allows remote attackers to spoo ...
CVE-2016-1943
Mozilla Firefox before 44.0 on Android allows remote attackers to spoof the address bar via the scrollTo method.
CVE-2016-1942
Mozilla Firefox before 44.0 allows user-assisted remote attackers to s ...
CVE-2016-1942
Mozilla Firefox before 44.0 allows user-assisted remote attackers to spoof a trailing substring in the address bar by leveraging a user's paste of a (1) wyciwyg: URI or (2) resource: URI.
CVE-2016-1941
The file-download dialog in Mozilla Firefox before 44.0 on OS X enable ...
CVE-2016-1941
The file-download dialog in Mozilla Firefox before 44.0 on OS X enables a certain button too quickly, which allows remote attackers to conduct clickjacking attacks via a crafted web site that triggers a single-click action in a situation where a double-click action was intended.
CVE-2016-1940
Mozilla Firefox before 44.0 on Android allows remote attackers to spoo ...
CVE-2016-1940
Mozilla Firefox before 44.0 on Android allows remote attackers to spoof the address bar via a data: URL that is mishandled during (1) shortcut opening or (2) BOOKMARK intent processing.
CVE-2016-1939
Mozilla Firefox before 44.0 stores cookies with names containing verti ...
CVE-2016-1939
Mozilla Firefox before 44.0 stores cookies with names containing vertical tab characters, which allows remote attackers to obtain sensitive information by reading HTTP Cookie headers. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-7208.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2016-1943 Mozilla Firefox before 44.0 on Android allows remote attackers to spoo ... | CVSS3: 4.7 | 1% Низкий | больше 10 лет назад | |
CVE-2016-1943 Mozilla Firefox before 44.0 on Android allows remote attackers to spoof the address bar via the scrollTo method. | CVSS3: 4.7 | 1% Низкий | больше 10 лет назад | |
CVE-2016-1942 Mozilla Firefox before 44.0 allows user-assisted remote attackers to s ... | CVSS3: 7.4 | 2% Низкий | больше 10 лет назад | |
CVE-2016-1942 Mozilla Firefox before 44.0 allows user-assisted remote attackers to spoof a trailing substring in the address bar by leveraging a user's paste of a (1) wyciwyg: URI or (2) resource: URI. | CVSS3: 7.4 | 2% Низкий | больше 10 лет назад | |
CVE-2016-1941 The file-download dialog in Mozilla Firefox before 44.0 on OS X enable ... | CVSS3: 6.1 | 1% Низкий | больше 10 лет назад | |
CVE-2016-1941 The file-download dialog in Mozilla Firefox before 44.0 on OS X enables a certain button too quickly, which allows remote attackers to conduct clickjacking attacks via a crafted web site that triggers a single-click action in a situation where a double-click action was intended. | CVSS3: 6.1 | 1% Низкий | больше 10 лет назад | |
CVE-2016-1940 Mozilla Firefox before 44.0 on Android allows remote attackers to spoo ... | CVSS3: 5.3 | 1% Низкий | больше 10 лет назад | |
CVE-2016-1940 Mozilla Firefox before 44.0 on Android allows remote attackers to spoof the address bar via a data: URL that is mishandled during (1) shortcut opening or (2) BOOKMARK intent processing. | CVSS3: 5.3 | 1% Низкий | больше 10 лет назад | |
CVE-2016-1939 Mozilla Firefox before 44.0 stores cookies with names containing verti ... | CVSS3: 5.3 | 2% Низкий | больше 10 лет назад | |
CVE-2016-1939 Mozilla Firefox before 44.0 stores cookies with names containing vertical tab characters, which allows remote attackers to obtain sensitive information by reading HTTP Cookie headers. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-7208. | CVSS3: 5.3 | 2% Низкий | больше 10 лет назад |
Уязвимостей на страницу