Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 304
BDU:2025-13249
Уязвимость браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю выполнить произвольный код
BDU:2025-13288
Уязвимость компонента WebGL Texture Handler браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю выполнить произвольный код
GHSA-q64v-9mh2-3xcq
Cookie storage for non-HTML temporary documents was being shared incorrectly with normal browsing content, allowing information from private tabs to escape Incognito mode even after the user closed all tabs This vulnerability affects Firefox for iOS < 143.1.
GHSA-7cgj-mr4w-j8w6
This vulnerability affects Firefox < 143.0.3.
GHSA-qjxq-j34f-3jf2
This vulnerability affects Firefox < 143.0.3.
CVE-2025-11153
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 143.0.3.
CVE-2025-11153
JIT miscompilation in the JavaScript Engine: JIT component. This vulne ...
CVE-2025-11152
Sandbox escape due to integer overflow in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 143.0.3.
CVE-2025-11152
Sandbox escape due to integer overflow in the Graphics: Canvas2D compo ...
CVE-2025-10859
Cookie storage for non-HTML temporary documents was being shared incorrectly with normal browsing content, allowing information from private tabs to escape Incognito mode even after the user closed all tabs. This vulnerability was fixed in Firefox for iOS 143.1.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
BDU:2025-13249 Уязвимость браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.8 | 0% Низкий | 10 месяцев назад | |
BDU:2025-13288 Уязвимость компонента WebGL Texture Handler браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю выполнить произвольный код | CVSS3: 9.8 | 0% Низкий | 10 месяцев назад | |
GHSA-q64v-9mh2-3xcq Cookie storage for non-HTML temporary documents was being shared incorrectly with normal browsing content, allowing information from private tabs to escape Incognito mode even after the user closed all tabs This vulnerability affects Firefox for iOS < 143.1. | CVSS3: 4 | 0% Низкий | 10 месяцев назад | |
GHSA-7cgj-mr4w-j8w6 This vulnerability affects Firefox < 143.0.3. | CVSS3: 7.5 | 0% Низкий | 10 месяцев назад | |
GHSA-qjxq-j34f-3jf2 This vulnerability affects Firefox < 143.0.3. | CVSS3: 8.6 | 0% Низкий | 10 месяцев назад | |
CVE-2025-11153 JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 143.0.3. | CVSS3: 7.5 | 0% Низкий | 10 месяцев назад | |
CVE-2025-11153 JIT miscompilation in the JavaScript Engine: JIT component. This vulne ... | CVSS3: 7.5 | 0% Низкий | 10 месяцев назад | |
CVE-2025-11152 Sandbox escape due to integer overflow in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 143.0.3. | CVSS3: 8.6 | 0% Низкий | 10 месяцев назад | |
CVE-2025-11152 Sandbox escape due to integer overflow in the Graphics: Canvas2D compo ... | CVSS3: 8.6 | 0% Низкий | 10 месяцев назад | |
CVE-2025-10859 Cookie storage for non-HTML temporary documents was being shared incorrectly with normal browsing content, allowing information from private tabs to escape Incognito mode even after the user closed all tabs. This vulnerability was fixed in Firefox for iOS 143.1. | CVSS3: 4 | 0% Низкий | 10 месяцев назад |
Уязвимостей на страницу