Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 304

suse-cvrf логотип

SUSE-SU-2025:3804-1

10 месяцев назад

Security update for mozilla-nss

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:3760-1

10 месяцев назад

Security update for mozilla-nss

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:3759-1

10 месяцев назад

Security update for mozilla-nss

EPSS: Низкий
fstec логотип

BDU:2025-13227

10 месяцев назад

Уязвимость механизмов рендеринга Blink и WebKit браузеров на основе Chromium и Safari, позволяющая нарушителю вызвать отказ в обслуживании браузера

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-2w7r-ggfp-x894

10 месяцев назад

A compromised web process was able to trigger out of bounds reads and writes in a more privileged process using manipulated WebGL textures. This vulnerability affects Firefox < 144, Firefox ESR < 115.29, Firefox ESR < 140.4, Thunderbird < 144, and Thunderbird < 140.4.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xp5g-gff9-qvvx

10 месяцев назад

There was a way to change the value of JavaScript Object properties that were supposed to be non-writeable. This vulnerability affects Firefox < 144, Firefox ESR < 115.29, Firefox ESR < 140.4, Thunderbird < 144, and Thunderbird < 140.4.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2p9h-v8v8-2j3w

10 месяцев назад

Memory safety bugs present in Firefox ESR 115.28, Firefox ESR 140.3, Thunderbird ESR 140.3, Firefox 143 and Thunderbird 143. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 144, Firefox ESR < 115.29, Firefox ESR < 140.4, Thunderbird < 144, and Thunderbird < 140.4.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-r25g-xjc5-pcrv

10 месяцев назад

Memory safety bug present in Firefox 143 and Thunderbird 143. This bug showed evidence of memory corruption and we presume that with enough effort this could have been exploited to run arbitrary code. This vulnerability affects Firefox < 144 and Thunderbird < 144.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-53qc-r462-795h

10 месяцев назад

When switching between Android apps using the card carousel Firefox shows a black screen as its card image when a password-related screen was the last one being used. Prior to Firefox 144 the password edit screen was visible. This vulnerability affects Firefox < 144.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-p8g8-q63w-8jgm

10 месяцев назад

Links in a sandboxed iframe could open an external app on Android without the required "allow-" permission. This vulnerability affects Firefox < 144 and Thunderbird < 144.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
suse-cvrf логотип
SUSE-SU-2025:3804-1

Security update for mozilla-nss

0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:3760-1

Security update for mozilla-nss

0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:3759-1

Security update for mozilla-nss

0%
Низкий
10 месяцев назад
fstec логотип
BDU:2025-13227

Уязвимость механизмов рендеринга Blink и WebKit браузеров на основе Chromium и Safari, позволяющая нарушителю вызвать отказ в обслуживании браузера

CVSS3: 5.4
10 месяцев назад
github логотип
GHSA-2w7r-ggfp-x894

A compromised web process was able to trigger out of bounds reads and writes in a more privileged process using manipulated WebGL textures. This vulnerability affects Firefox < 144, Firefox ESR < 115.29, Firefox ESR < 140.4, Thunderbird < 144, and Thunderbird < 140.4.

CVSS3: 9.8
0%
Низкий
10 месяцев назад
github логотип
GHSA-xp5g-gff9-qvvx

There was a way to change the value of JavaScript Object properties that were supposed to be non-writeable. This vulnerability affects Firefox < 144, Firefox ESR < 115.29, Firefox ESR < 140.4, Thunderbird < 144, and Thunderbird < 140.4.

CVSS3: 6.5
0%
Низкий
10 месяцев назад
github логотип
GHSA-2p9h-v8v8-2j3w

Memory safety bugs present in Firefox ESR 115.28, Firefox ESR 140.3, Thunderbird ESR 140.3, Firefox 143 and Thunderbird 143. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 144, Firefox ESR < 115.29, Firefox ESR < 140.4, Thunderbird < 144, and Thunderbird < 140.4.

CVSS3: 8.8
0%
Низкий
10 месяцев назад
github логотип
GHSA-r25g-xjc5-pcrv

Memory safety bug present in Firefox 143 and Thunderbird 143. This bug showed evidence of memory corruption and we presume that with enough effort this could have been exploited to run arbitrary code. This vulnerability affects Firefox < 144 and Thunderbird < 144.

CVSS3: 9.8
0%
Низкий
10 месяцев назад
github логотип
GHSA-53qc-r462-795h

When switching between Android apps using the card carousel Firefox shows a black screen as its card image when a password-related screen was the last one being used. Prior to Firefox 144 the password edit screen was visible. This vulnerability affects Firefox < 144.

CVSS3: 9.1
0%
Низкий
10 месяцев назад
github логотип
GHSA-p8g8-q63w-8jgm

Links in a sandboxed iframe could open an external app on Android without the required "allow-" permission. This vulnerability affects Firefox < 144 and Thunderbird < 144.

CVSS3: 6.5
0%
Низкий
10 месяцев назад

Уязвимостей на страницу


Поделиться