Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 299

github логотип

GHSA-h67m-x9c3-v9wp

5 месяцев назад

Use-after-free in the Storage: IndexedDB component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-wwg9-hv2r-mj8w

5 месяцев назад

Integer overflow in the Audio/Video component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2255-92v8-4pvj

5 месяцев назад

Sandbox escape due to incorrect boundary conditions in the Graphics: WebRender component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 10
EPSS: Низкий
github логотип

GHSA-h3qc-gf9h-42g6

5 месяцев назад

Mitigation bypass in the DOM: HTML Parser component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-m65f-px5x-xq9x

5 месяцев назад

Undefined behavior in the DOM: Core & HTML component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-99p8-j693-qhpc

5 месяцев назад

Use-after-free in the JavaScript Engine component. This vulnerability affects Firefox < 148 and Firefox ESR < 140.8.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3jr5-gwfp-7mfw

5 месяцев назад

JIT miscompilation, use-after-free in the JavaScript Engine: JIT component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-gwgg-r543-4wvw

5 месяцев назад

Malicious scripts could cause desynchronization between the address bar and web content before a response is received in Firefox iOS, allowing attacker-controlled pages to be presented under spoofed domains. This vulnerability affects Firefox for iOS < 147.4.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-r2q9-885m-j92q

5 месяцев назад

Incorrect boundary conditions in the WebRTC: Audio/Video component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-gxg5-574v-j5f6

5 месяцев назад

Use-after-free in the Audio/Video: Playback component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
github логотип
GHSA-h67m-x9c3-v9wp

Use-after-free in the Storage: IndexedDB component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 8.8
0%
Низкий
5 месяцев назад
github логотип
GHSA-wwg9-hv2r-mj8w

Integer overflow in the Audio/Video component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 9.8
1%
Низкий
5 месяцев назад
github логотип
GHSA-2255-92v8-4pvj

Sandbox escape due to incorrect boundary conditions in the Graphics: WebRender component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 10
0%
Низкий
5 месяцев назад
github логотип
GHSA-h3qc-gf9h-42g6

Mitigation bypass in the DOM: HTML Parser component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 9.8
1%
Низкий
5 месяцев назад
github логотип
GHSA-m65f-px5x-xq9x

Undefined behavior in the DOM: Core & HTML component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 9.8
0%
Низкий
5 месяцев назад
github логотип
GHSA-99p8-j693-qhpc

Use-after-free in the JavaScript Engine component. This vulnerability affects Firefox < 148 and Firefox ESR < 140.8.

CVSS3: 9.8
0%
Низкий
5 месяцев назад
github логотип
GHSA-3jr5-gwfp-7mfw

JIT miscompilation, use-after-free in the JavaScript Engine: JIT component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 9.8
0%
Низкий
5 месяцев назад
github логотип
GHSA-gwgg-r543-4wvw

Malicious scripts could cause desynchronization between the address bar and web content before a response is received in Firefox iOS, allowing attacker-controlled pages to be presented under spoofed domains. This vulnerability affects Firefox for iOS < 147.4.

CVSS3: 9.8
0%
Низкий
5 месяцев назад
github логотип
GHSA-r2q9-885m-j92q

Incorrect boundary conditions in the WebRTC: Audio/Video component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 9.8
0%
Низкий
5 месяцев назад
github логотип
GHSA-gxg5-574v-j5f6

Use-after-free in the Audio/Video: Playback component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

CVSS3: 9.8
0%
Низкий
5 месяцев назад

Уязвимостей на страницу


Поделиться