Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 673
CVE-2008-1380
The JavaScript engine in Mozilla Firefox before 2.0.0.14, Thunderbird before 2.0.0.14, and SeaMonkey before 1.1.10 allows remote attackers to cause a denial of service (garbage collector crash) and possibly have other impacts via a crafted web page. NOTE: this is due to an incorrect fix for CVE-2008-1237.
CVE-2008-1240
LiveConnect in Mozilla Firefox before 2.0.0.13 and SeaMonkey before 1. ...
CVE-2008-1240
LiveConnect in Mozilla Firefox before 2.0.0.13 and SeaMonkey before 1.1.9 does not properly parse the content origin for jar: URIs before sending them to the Java plugin, which allows remote attackers to access arbitrary ports on the local machine. NOTE: this is closely related to CVE-2008-1195.
CVE-2008-1240
LiveConnect in Mozilla Firefox before 2.0.0.13 and SeaMonkey before 1.1.9 does not properly parse the content origin for jar: URIs before sending them to the Java plugin, which allows remote attackers to access arbitrary ports on the local machine. NOTE: this is closely related to CVE-2008-1195.
CVE-2008-1235
Unspecified vulnerability in Mozilla Firefox before 2.0.0.13, Thunderb ...
CVE-2008-1233
Unspecified vulnerability in Mozilla Firefox before 2.0.0.13, Thunderb ...
CVE-2008-1234
Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 2.0 ...
CVE-2008-1238
Mozilla Firefox before 2.0.0.13 and SeaMonkey before 1.1.9, when gener ...
CVE-2008-1241
GUI overlay vulnerability in Mozilla Firefox before 2.0.0.13 and SeaMo ...
CVE-2008-1237
Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.1 ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2008-1380 The JavaScript engine in Mozilla Firefox before 2.0.0.14, Thunderbird before 2.0.0.14, and SeaMonkey before 1.1.10 allows remote attackers to cause a denial of service (garbage collector crash) and possibly have other impacts via a crafted web page. NOTE: this is due to an incorrect fix for CVE-2008-1237. | 3% Низкий | больше 18 лет назад | ||
CVE-2008-1240 LiveConnect in Mozilla Firefox before 2.0.0.13 and SeaMonkey before 1. ... | CVSS2: 5 | 3% Низкий | больше 18 лет назад | |
CVE-2008-1240 LiveConnect in Mozilla Firefox before 2.0.0.13 and SeaMonkey before 1.1.9 does not properly parse the content origin for jar: URIs before sending them to the Java plugin, which allows remote attackers to access arbitrary ports on the local machine. NOTE: this is closely related to CVE-2008-1195. | CVSS2: 5 | 3% Низкий | больше 18 лет назад | |
CVE-2008-1240 LiveConnect in Mozilla Firefox before 2.0.0.13 and SeaMonkey before 1.1.9 does not properly parse the content origin for jar: URIs before sending them to the Java plugin, which allows remote attackers to access arbitrary ports on the local machine. NOTE: this is closely related to CVE-2008-1195. | CVSS2: 5 | 3% Низкий | больше 18 лет назад | |
CVE-2008-1235 Unspecified vulnerability in Mozilla Firefox before 2.0.0.13, Thunderb ... | CVSS2: 9.3 | 6% Низкий | больше 18 лет назад | |
CVE-2008-1233 Unspecified vulnerability in Mozilla Firefox before 2.0.0.13, Thunderb ... | CVSS2: 6.8 | 4% Низкий | больше 18 лет назад | |
CVE-2008-1234 Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 2.0 ... | CVSS2: 4.3 | 3% Низкий | больше 18 лет назад | |
CVE-2008-1238 Mozilla Firefox before 2.0.0.13 and SeaMonkey before 1.1.9, when gener ... | CVSS2: 5 | 2% Низкий | больше 18 лет назад | |
CVE-2008-1241 GUI overlay vulnerability in Mozilla Firefox before 2.0.0.13 and SeaMo ... | CVSS2: 4.3 | 2% Низкий | больше 18 лет назад | |
CVE-2008-1237 Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.1 ... | CVSS2: 6.8 | 3% Низкий | больше 18 лет назад |
Уязвимостей на страницу