Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 296
CVE-2008-2810
Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not pro ...
CVE-2008-2799
Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.1 ...
CVE-2008-2801
Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not pro ...
CVE-2008-2798
Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.1 ...
CVE-2008-2808
Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not pro ...
CVE-2008-2811
The block reflow implementation in Mozilla Firefox before 2.0.0.15, Th ...
CVE-2008-2802
Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and ...
CVE-2008-2800
Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 allow remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via vectors involving (1) an event handler attached to an outer window, (2) a SCRIPT element in an unloaded document, or (3) the onreadystatechange handler in conjunction with an XMLHttpRequest.
CVE-2008-2801
Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not properly implement JAR signing, which allows remote attackers to execute arbitrary code via (1) injection of JavaScript into documents within a JAR archive or (2) a JAR archive that uses relative URLs to JavaScript files.
CVE-2008-2806
Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 on Mac OS X allow remote attackers to bypass the Same Origin Policy and create arbitrary socket connections via a crafted Java applet, related to the Java Embedding Plugin (JEP) and Java LiveConnect.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2008-2810 Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not pro ... | CVSS2: 6.8 | 1% Низкий | около 18 лет назад | |
CVE-2008-2799 Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.1 ... | CVSS2: 10 | 6% Низкий | около 18 лет назад | |
CVE-2008-2801 Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not pro ... | CVSS2: 7.5 | 3% Низкий | около 18 лет назад | |
CVE-2008-2798 Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.1 ... | CVSS2: 10 | 14% Средний | около 18 лет назад | |
CVE-2008-2808 Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not pro ... | CVSS2: 4.3 | 1% Низкий | около 18 лет назад | |
CVE-2008-2811 The block reflow implementation in Mozilla Firefox before 2.0.0.15, Th ... | CVSS2: 10 | 7% Низкий | около 18 лет назад | |
CVE-2008-2802 Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and ... | CVSS2: 7.5 | 4% Низкий | около 18 лет назад | |
CVE-2008-2800 Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 allow remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via vectors involving (1) an event handler attached to an outer window, (2) a SCRIPT element in an unloaded document, or (3) the onreadystatechange handler in conjunction with an XMLHttpRequest. | CVSS2: 4.3 | 2% Низкий | около 18 лет назад | |
CVE-2008-2801 Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not properly implement JAR signing, which allows remote attackers to execute arbitrary code via (1) injection of JavaScript into documents within a JAR archive or (2) a JAR archive that uses relative URLs to JavaScript files. | CVSS2: 7.5 | 3% Низкий | около 18 лет назад | |
CVE-2008-2806 Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 on Mac OS X allow remote attackers to bypass the Same Origin Policy and create arbitrary socket connections via a crafted Java applet, related to the Java Embedding Plugin (JEP) and Java LiveConnect. | CVSS2: 7.5 | 3% Низкий | около 18 лет назад |
Уязвимостей на страницу