Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 673
BDU:2026-04850
Уязвимость компонента WebGPU браузера Mozilla Firefox и почтового клиента Thunderbird, позволяющая нарушителю выполнить произвольный код
BDU:2026-04919
Уязвимость браузеров Firefox, Firefox ESR и почтовых клиентов Thunderbird, Thunderbird ESR, связанная с записью за границами буфера, позволяющая нарушителю выполнить произвольный код
BDU:2026-04975
Уязвимость компонента Graphics: Text браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю выполнить произвольный код
GHSA-xh4v-qr89-3hj3
Memory safety bugs present in Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149.
GHSA-c3hv-rw36-5mgq
Spoofing issue in the Privacy: Anti-Tracking component. This vulnerability affects Firefox < 149.
GHSA-h6r3-p5gv-5qgc
Memory safety bugs present in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149 and Firefox ESR < 140.9.
GHSA-fmr6-7878-wx6p
Privilege escalation in the IPC component. This vulnerability affects Firefox < 149.
GHSA-c97j-hmj5-572h
Use-after-free in the JavaScript Engine component. This vulnerability affects Firefox < 149.
GHSA-mmvq-h6g9-8h39
Memory safety bugs present in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149, Firefox ESR < 115.34, and Firefox ESR < 140.9.
GHSA-j97q-98f4-5wq3
Undefined behavior in the Audio/Video component. This vulnerability affects Firefox < 149.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
BDU:2026-04850 Уязвимость компонента WebGPU браузера Mozilla Firefox и почтового клиента Thunderbird, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.8 | 0% Низкий | 6 месяцев назад | |
BDU:2026-04919 Уязвимость браузеров Firefox, Firefox ESR и почтовых клиентов Thunderbird, Thunderbird ESR, связанная с записью за границами буфера, позволяющая нарушителю выполнить произвольный код | CVSS3: 9.8 | 0% Низкий | 6 месяцев назад | |
BDU:2026-04975 Уязвимость компонента Graphics: Text браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.8 | 0% Низкий | 6 месяцев назад | |
GHSA-xh4v-qr89-3hj3 Memory safety bugs present in Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149. | CVSS3: 9.8 | 0% Низкий | 6 месяцев назад | |
GHSA-c3hv-rw36-5mgq Spoofing issue in the Privacy: Anti-Tracking component. This vulnerability affects Firefox < 149. | CVSS3: 6.5 | 0% Низкий | 6 месяцев назад | |
GHSA-h6r3-p5gv-5qgc Memory safety bugs present in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149 and Firefox ESR < 140.9. | CVSS3: 9.8 | 0% Низкий | 6 месяцев назад | |
GHSA-fmr6-7878-wx6p Privilege escalation in the IPC component. This vulnerability affects Firefox < 149. | CVSS3: 8.8 | 0% Низкий | 6 месяцев назад | |
GHSA-c97j-hmj5-572h Use-after-free in the JavaScript Engine component. This vulnerability affects Firefox < 149. | CVSS3: 9.8 | 0% Низкий | 6 месяцев назад | |
GHSA-mmvq-h6g9-8h39 Memory safety bugs present in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149, Firefox ESR < 115.34, and Firefox ESR < 140.9. | CVSS3: 9.8 | 0% Низкий | 6 месяцев назад | |
GHSA-j97q-98f4-5wq3 Undefined behavior in the Audio/Video component. This vulnerability affects Firefox < 149. | CVSS3: 9.1 | 0% Низкий | 6 месяцев назад |
Уязвимостей на страницу