Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

nvd логотип

CVE-2013-1688

около 13 лет назад

The Profiler implementation in Mozilla Firefox before 22.0 parses untrusted data during UI rendering, which allows user-assisted remote attackers to execute arbitrary JavaScript code via a crafted web site.

CVSS2: 9.3
EPSS: Низкий
debian логотип

CVE-2013-1687

около 13 лет назад

The System Only Wrapper (SOW) and Chrome Object Wrapper (COW) implemen ...

CVSS2: 9.3
EPSS: Низкий
nvd логотип

CVE-2013-1687

около 13 лет назад

The System Only Wrapper (SOW) and Chrome Object Wrapper (COW) implementations in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 do not properly restrict XBL user-defined functions, which allows remote attackers to execute arbitrary JavaScript code with chrome privileges, or conduct cross-site scripting (XSS) attacks, via a crafted web site.

CVSS2: 9.3
EPSS: Низкий
debian логотип

CVE-2013-1686

около 13 лет назад

Use-after-free vulnerability in the mozilla::ResetDir function in Mozi ...

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2013-1686

около 13 лет назад

Use-after-free vulnerability in the mozilla::ResetDir function in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.

CVSS2: 10
EPSS: Низкий
debian логотип

CVE-2013-1685

около 13 лет назад

Use-after-free vulnerability in the nsIDocument::GetRootElement functi ...

CVSS2: 9.3
EPSS: Низкий
nvd логотип

CVE-2013-1685

около 13 лет назад

Use-after-free vulnerability in the nsIDocument::GetRootElement function in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted web site.

CVSS2: 9.3
EPSS: Низкий
debian логотип

CVE-2013-1684

около 13 лет назад

Use-after-free vulnerability in the mozilla::dom::HTMLMediaElement::Lo ...

CVSS2: 9.3
EPSS: Низкий
nvd логотип

CVE-2013-1684

около 13 лет назад

Use-after-free vulnerability in the mozilla::dom::HTMLMediaElement::LookupMediaElementURITable function in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted web site.

CVSS2: 9.3
EPSS: Низкий
debian логотип

CVE-2013-1683

около 13 лет назад

Multiple unspecified vulnerabilities in the browser engine in Mozilla ...

CVSS2: 10
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2013-1688

The Profiler implementation in Mozilla Firefox before 22.0 parses untrusted data during UI rendering, which allows user-assisted remote attackers to execute arbitrary JavaScript code via a crafted web site.

CVSS2: 9.3
3%
Низкий
около 13 лет назад
debian логотип
CVE-2013-1687

The System Only Wrapper (SOW) and Chrome Object Wrapper (COW) implemen ...

CVSS2: 9.3
3%
Низкий
около 13 лет назад
nvd логотип
CVE-2013-1687

The System Only Wrapper (SOW) and Chrome Object Wrapper (COW) implementations in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 do not properly restrict XBL user-defined functions, which allows remote attackers to execute arbitrary JavaScript code with chrome privileges, or conduct cross-site scripting (XSS) attacks, via a crafted web site.

CVSS2: 9.3
3%
Низкий
около 13 лет назад
debian логотип
CVE-2013-1686

Use-after-free vulnerability in the mozilla::ResetDir function in Mozi ...

CVSS2: 10
5%
Низкий
около 13 лет назад
nvd логотип
CVE-2013-1686

Use-after-free vulnerability in the mozilla::ResetDir function in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.

CVSS2: 10
5%
Низкий
около 13 лет назад
debian логотип
CVE-2013-1685

Use-after-free vulnerability in the nsIDocument::GetRootElement functi ...

CVSS2: 9.3
4%
Низкий
около 13 лет назад
nvd логотип
CVE-2013-1685

Use-after-free vulnerability in the nsIDocument::GetRootElement function in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted web site.

CVSS2: 9.3
4%
Низкий
около 13 лет назад
debian логотип
CVE-2013-1684

Use-after-free vulnerability in the mozilla::dom::HTMLMediaElement::Lo ...

CVSS2: 9.3
4%
Низкий
около 13 лет назад
nvd логотип
CVE-2013-1684

Use-after-free vulnerability in the mozilla::dom::HTMLMediaElement::LookupMediaElementURITable function in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted web site.

CVSS2: 9.3
4%
Низкий
около 13 лет назад
debian логотип
CVE-2013-1683

Multiple unspecified vulnerabilities in the browser engine in Mozilla ...

CVSS2: 10
5%
Низкий
около 13 лет назад

Уязвимостей на страницу


Поделиться