Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 299
BDU:2026-03392
Уязвимость компонента DOM: Security браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю обойти существующие ограничения безопасности
GHSA-ff4q-8rgg-cv6g
Memory safety bugs present in Firefox 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 146.0.1.
GHSA-w3cw-f63h-9g34
Unicode RTLO characters could allow malicious websites to spoof filenames in the downloads UI for Firefox for iOS, potentially tricking users into saving files of an unexpected file type. This vulnerability affects Firefox for iOS < 144.0.
GHSA-7p9f-x9pw-w3x4
Use-after-free in the Disability Access APIs component. This vulnerability affects Firefox < 146.0.1.
CVE-2025-14861
Memory safety bugs present in Firefox 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 146.0.1.
CVE-2025-14861
Memory safety bugs present in Firefox 146. Some of these bugs showed e ...
CVE-2025-14860
Use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 146.0.1.
CVE-2025-14860
Use-after-free in the Disability Access APIs component. This vulnerabi ...
CVE-2025-14744
Unicode RTLO characters could allow malicious websites to spoof filenames in the downloads UI for Firefox for iOS, potentially tricking users into saving files of an unexpected file type. This vulnerability was fixed in Firefox for iOS 144.0.
CVE-2025-14744
Unicode RTLO characters could allow malicious websites to spoof filena ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
BDU:2026-03392 Уязвимость компонента DOM: Security браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю обойти существующие ограничения безопасности | CVSS3: 8.1 | 0% Низкий | 7 месяцев назад | |
GHSA-ff4q-8rgg-cv6g Memory safety bugs present in Firefox 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 146.0.1. | CVSS3: 8.8 | 0% Низкий | 8 месяцев назад | |
GHSA-w3cw-f63h-9g34 Unicode RTLO characters could allow malicious websites to spoof filenames in the downloads UI for Firefox for iOS, potentially tricking users into saving files of an unexpected file type. This vulnerability affects Firefox for iOS < 144.0. | CVSS3: 6.5 | 0% Низкий | 8 месяцев назад | |
GHSA-7p9f-x9pw-w3x4 Use-after-free in the Disability Access APIs component. This vulnerability affects Firefox < 146.0.1. | CVSS3: 9.8 | 0% Низкий | 8 месяцев назад | |
CVE-2025-14861 Memory safety bugs present in Firefox 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 146.0.1. | CVSS3: 8.8 | 0% Низкий | 8 месяцев назад | |
CVE-2025-14861 Memory safety bugs present in Firefox 146. Some of these bugs showed e ... | CVSS3: 8.8 | 0% Низкий | 8 месяцев назад | |
CVE-2025-14860 Use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 146.0.1. | CVSS3: 9.8 | 0% Низкий | 8 месяцев назад | |
CVE-2025-14860 Use-after-free in the Disability Access APIs component. This vulnerabi ... | CVSS3: 9.8 | 0% Низкий | 8 месяцев назад | |
CVE-2025-14744 Unicode RTLO characters could allow malicious websites to spoof filenames in the downloads UI for Firefox for iOS, potentially tricking users into saving files of an unexpected file type. This vulnerability was fixed in Firefox for iOS 144.0. | CVSS3: 6.5 | 0% Низкий | 8 месяцев назад | |
CVE-2025-14744 Unicode RTLO characters could allow malicious websites to spoof filena ... | CVSS3: 6.5 | 0% Низкий | 8 месяцев назад |
Уязвимостей на страницу