Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 299
CVE-2026-24868
Mitigation bypass in the Privacy: Anti-Tracking component. This vulnerability was fixed in Firefox 147.0.2.
CVE-2026-24868
Mitigation bypass in the Privacy: Anti-Tracking component. This vulnerability was fixed in Firefox 147.0.2.
CVE-2026-24869
Use-after-free in the Layout: Scrolling and Overflow component. This vulnerability was fixed in Firefox 147.0.2.
BDU:2026-00969
Уязвимость компонента Privacy: Anti-Tracking браузера Mozilla Firefox, позволяющая нарушителю оказать воздействие на целостность защищаемой информации
BDU:2026-00970
Уязвимость компонента Layout: Scrolling and Overflow браузера Mozilla Firefox, позволяющая нарушителю выполнить произвольный код
GHSA-96f5-9x27-7hhh
Clickjacking issue, information disclosure in the PDF Viewer component. This vulnerability affects Firefox < 147 and Firefox ESR < 140.7.
GHSA-fw2q-3cf8-mv4x
Use-after-free in the JavaScript: GC component. This vulnerability affects Firefox < 147 and Firefox ESR < 140.7.
GHSA-3m78-88vj-q2rf
Memory safety bugs present in Firefox 146 and Thunderbird 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 147.
GHSA-94r2-4g95-pg9m
Information disclosure in the XML component. This vulnerability affects Firefox < 147.
GHSA-w588-qjhp-fm98
Memory safety bugs present in Firefox ESR 140.6, Thunderbird ESR 140.6, Firefox 146 and Thunderbird 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 147 and Firefox ESR < 140.7.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2026-24868 Mitigation bypass in the Privacy: Anti-Tracking component. This vulnerability was fixed in Firefox 147.0.2. | CVSS3: 6.5 | 0% Низкий | 6 месяцев назад | |
CVE-2026-24868 Mitigation bypass in the Privacy: Anti-Tracking component. This vulnerability was fixed in Firefox 147.0.2. | CVSS3: 6.1 | 0% Низкий | 6 месяцев назад | |
CVE-2026-24869 Use-after-free in the Layout: Scrolling and Overflow component. This vulnerability was fixed in Firefox 147.0.2. | CVSS3: 7.5 | 0% Низкий | 6 месяцев назад | |
BDU:2026-00969 Уязвимость компонента Privacy: Anti-Tracking браузера Mozilla Firefox, позволяющая нарушителю оказать воздействие на целостность защищаемой информации | CVSS3: 7.5 | 0% Низкий | 6 месяцев назад | |
BDU:2026-00970 Уязвимость компонента Layout: Scrolling and Overflow браузера Mozilla Firefox, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.1 | 0% Низкий | 6 месяцев назад | |
GHSA-96f5-9x27-7hhh Clickjacking issue, information disclosure in the PDF Viewer component. This vulnerability affects Firefox < 147 and Firefox ESR < 140.7. | CVSS3: 5.3 | 0% Низкий | 7 месяцев назад | |
GHSA-fw2q-3cf8-mv4x Use-after-free in the JavaScript: GC component. This vulnerability affects Firefox < 147 and Firefox ESR < 140.7. | CVSS3: 6.5 | 0% Низкий | 7 месяцев назад | |
GHSA-3m78-88vj-q2rf Memory safety bugs present in Firefox 146 and Thunderbird 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 147. | CVSS3: 9.8 | 0% Низкий | 7 месяцев назад | |
GHSA-94r2-4g95-pg9m Information disclosure in the XML component. This vulnerability affects Firefox < 147. | CVSS3: 5.3 | 0% Низкий | 7 месяцев назад | |
GHSA-w588-qjhp-fm98 Memory safety bugs present in Firefox ESR 140.6, Thunderbird ESR 140.6, Firefox 146 and Thunderbird 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 147 and Firefox ESR < 140.7. | CVSS3: 8.1 | 0% Низкий | 7 месяцев назад |
Уязвимостей на страницу