Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

debian логотип

CVE-2013-5601

почти 13 лет назад

Use-after-free vulnerability in the nsEventListenerManager::SetEventHa ...

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2013-5601

почти 13 лет назад

Use-after-free vulnerability in the nsEventListenerManager::SetEventHandler function in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code via vectors related to a memory allocation through the garbage collection (GC) API.

CVSS2: 10
EPSS: Низкий
debian логотип

CVE-2013-5600

почти 13 лет назад

Use-after-free vulnerability in the nsIOService::NewChannelFromURIWith ...

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2013-5600

почти 13 лет назад

Use-after-free vulnerability in the nsIOService::NewChannelFromURIWithProxyFlags function in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code via vectors involving a blob: URL.

CVSS2: 10
EPSS: Низкий
debian логотип

CVE-2013-5599

почти 13 лет назад

Use-after-free vulnerability in the nsIPresShell::GetPresContext funct ...

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2013-5599

почти 13 лет назад

Use-after-free vulnerability in the nsIPresShell::GetPresContext function in the PresShell (aka presentation shell) implementation in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and application crash) via vectors involving a CANVAS element, a mozTextStyle attribute, and an onresize event.

CVSS2: 10
EPSS: Низкий
debian логотип

CVE-2013-5598

почти 13 лет назад

PDF.js in Mozilla Firefox before 25.0 and Firefox ESR 24.x before 24.1 ...

CVSS2: 8.3
EPSS: Низкий
nvd логотип

CVE-2013-5598

почти 13 лет назад

PDF.js in Mozilla Firefox before 25.0 and Firefox ESR 24.x before 24.1 does not properly handle the appending of an IFRAME element, which allows remote attackers to read arbitrary files or execute arbitrary JavaScript code with chrome privileges by using this element within an embedded PDF object.

CVSS2: 8.3
EPSS: Низкий
debian логотип

CVE-2013-5597

почти 13 лет назад

Use-after-free vulnerability in the nsDocLoader::doStopDocumentLoad fu ...

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2013-5597

почти 13 лет назад

Use-after-free vulnerability in the nsDocLoader::doStopDocumentLoad function in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via vectors involving a state-change event during an update of the offline cache.

CVSS2: 10
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2013-5601

Use-after-free vulnerability in the nsEventListenerManager::SetEventHa ...

CVSS2: 10
5%
Низкий
почти 13 лет назад
nvd логотип
CVE-2013-5601

Use-after-free vulnerability in the nsEventListenerManager::SetEventHandler function in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code via vectors related to a memory allocation through the garbage collection (GC) API.

CVSS2: 10
5%
Низкий
почти 13 лет назад
debian логотип
CVE-2013-5600

Use-after-free vulnerability in the nsIOService::NewChannelFromURIWith ...

CVSS2: 10
5%
Низкий
почти 13 лет назад
nvd логотип
CVE-2013-5600

Use-after-free vulnerability in the nsIOService::NewChannelFromURIWithProxyFlags function in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code via vectors involving a blob: URL.

CVSS2: 10
5%
Низкий
почти 13 лет назад
debian логотип
CVE-2013-5599

Use-after-free vulnerability in the nsIPresShell::GetPresContext funct ...

CVSS2: 10
5%
Низкий
почти 13 лет назад
nvd логотип
CVE-2013-5599

Use-after-free vulnerability in the nsIPresShell::GetPresContext function in the PresShell (aka presentation shell) implementation in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and application crash) via vectors involving a CANVAS element, a mozTextStyle attribute, and an onresize event.

CVSS2: 10
5%
Низкий
почти 13 лет назад
debian логотип
CVE-2013-5598

PDF.js in Mozilla Firefox before 25.0 and Firefox ESR 24.x before 24.1 ...

CVSS2: 8.3
3%
Низкий
почти 13 лет назад
nvd логотип
CVE-2013-5598

PDF.js in Mozilla Firefox before 25.0 and Firefox ESR 24.x before 24.1 does not properly handle the appending of an IFRAME element, which allows remote attackers to read arbitrary files or execute arbitrary JavaScript code with chrome privileges by using this element within an embedded PDF object.

CVSS2: 8.3
3%
Низкий
почти 13 лет назад
debian логотип
CVE-2013-5597

Use-after-free vulnerability in the nsDocLoader::doStopDocumentLoad fu ...

CVSS2: 10
6%
Низкий
почти 13 лет назад
nvd логотип
CVE-2013-5597

Use-after-free vulnerability in the nsDocLoader::doStopDocumentLoad function in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via vectors involving a state-change event during an update of the offline cache.

CVSS2: 10
6%
Низкий
почти 13 лет назад

Уязвимостей на страницу


Поделиться