Логотип exploitDog
product: "firefox"
Консоль
Логотип exploitDog

exploitDog

product: "firefox"
Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

11511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414520232024202520262027

Недавние уязвимости Mozilla Firefox

Количество 15 225

debian логотип

CVE-2023-5729

около 2 лет назад

A malicious web site can enter fullscreen mode while simultaneously tr ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-5728

около 2 лет назад

During garbage collection extra operations were performed on a object that should not be. This could have led to a potentially exploitable crash. This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2023-5728

около 2 лет назад

During garbage collection extra operations were performed on a object ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2023-5727

около 2 лет назад

The executable file warning was not presented when downloading .msix, .msixbundle, .appx, and .appxbundle files, which can run commands on a user's computer. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.* This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2023-5727

около 2 лет назад

The executable file warning was not presented when downloading .msix, ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2023-5726

около 2 лет назад

A website could have obscured the full screen notification by using the file open dialog. This could have led to user confusion and possible spoofing attacks. *Note: This issue only affected macOS operating systems. Other operating systems are unaffected.* This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2023-5726

около 2 лет назад

A website could have obscured the full screen notification by using th ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-5725

около 2 лет назад

A malicious installed WebExtension could open arbitrary URLs, which under the right circumstance could be leveraged to collect sensitive user data. This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2023-5725

около 2 лет назад

A malicious installed WebExtension could open arbitrary URLs, which un ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-5724

около 2 лет назад

Drivers are not always robust to extremely large draw calls and in some cases this scenario could have led to a crash. This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2023-5729

A malicious web site can enter fullscreen mode while simultaneously tr ...

CVSS3: 4.3
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-5728

During garbage collection extra operations were performed on a object that should not be. This could have led to a potentially exploitable crash. This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 7.5
0%
Низкий
около 2 лет назад
debian логотип
CVE-2023-5728

During garbage collection extra operations were performed on a object ...

CVSS3: 7.5
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-5727

The executable file warning was not presented when downloading .msix, .msixbundle, .appx, and .appxbundle files, which can run commands on a user's computer. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.* This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 6.5
0%
Низкий
около 2 лет назад
debian логотип
CVE-2023-5727

The executable file warning was not presented when downloading .msix, ...

CVSS3: 6.5
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-5726

A website could have obscured the full screen notification by using the file open dialog. This could have led to user confusion and possible spoofing attacks. *Note: This issue only affected macOS operating systems. Other operating systems are unaffected.* This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 4.3
0%
Низкий
около 2 лет назад
debian логотип
CVE-2023-5726

A website could have obscured the full screen notification by using th ...

CVSS3: 4.3
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-5725

A malicious installed WebExtension could open arbitrary URLs, which under the right circumstance could be leveraged to collect sensitive user data. This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 4.3
0%
Низкий
около 2 лет назад
debian логотип
CVE-2023-5725

A malicious installed WebExtension could open arbitrary URLs, which un ...

CVSS3: 4.3
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-5724

Drivers are not always robust to extremely large draw calls and in some cases this scenario could have led to a crash. This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 7.5
1%
Низкий
около 2 лет назад

Уязвимостей на страницу


Поделиться