Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 304

github логотип

GHSA-2fhm-pcv6-vcx9

около 1 года назад

On arm64, a WASM `br_table` instruction with a lot of entries could lead to the label being too far from the instruction causing truncation and incorrect computation of the branch address. This vulnerability affects Firefox < 141, Firefox ESR < 115.26, Firefox ESR < 128.13, Firefox ESR < 140.1, Thunderbird < 141, Thunderbird < 128.13, and Thunderbird < 140.1.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-hxr8-chw2-2wqc

около 1 года назад

XSLT document loading did not correctly propagate the source document which bypassed its CSP. This vulnerability affects Firefox < 141, Firefox ESR < 128.13, Firefox ESR < 140.1, Thunderbird < 141, Thunderbird < 128.13, and Thunderbird < 140.1.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-mm3g-858w-g8p8

около 1 года назад

Memory safety bugs present in Firefox 140 and Thunderbird 140. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 141 and Thunderbird < 141.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-7jcf-w576-jvj3

около 1 года назад

Memory safety bugs present in Firefox ESR 140.0, Thunderbird ESR 140.0, Firefox 140 and Thunderbird 140. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 141, Firefox ESR < 140.1, Thunderbird < 141, and Thunderbird < 140.1.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2025-8044

около 1 года назад

Memory safety bugs present in Firefox 140 and Thunderbird 140. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 141 and Thunderbird 141.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2025-8044

около 1 года назад

Memory safety bugs present in Firefox 140 and Thunderbird 140. Some of ...

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2025-8043

около 1 года назад

Focus incorrectly truncated URLs towards the beginning instead of around the origin. This vulnerability was fixed in Firefox 141.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2025-8043

около 1 года назад

Focus incorrectly truncated URLs towards the beginning instead of arou ...

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2025-8040

около 1 года назад

Memory safety bugs present in Firefox ESR 140.0, Thunderbird ESR 140.0, Firefox 140 and Thunderbird 140. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 141, Firefox ESR 140.1, Thunderbird 141, and Thunderbird 140.1.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2025-8040

около 1 года назад

Memory safety bugs present in Firefox ESR 140.0, Thunderbird ESR 140.0 ...

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
github логотип
GHSA-2fhm-pcv6-vcx9

On arm64, a WASM `br_table` instruction with a lot of entries could lead to the label being too far from the instruction causing truncation and incorrect computation of the branch address. This vulnerability affects Firefox < 141, Firefox ESR < 115.26, Firefox ESR < 128.13, Firefox ESR < 140.1, Thunderbird < 141, Thunderbird < 128.13, and Thunderbird < 140.1.

CVSS3: 9.8
0%
Низкий
около 1 года назад
github логотип
GHSA-hxr8-chw2-2wqc

XSLT document loading did not correctly propagate the source document which bypassed its CSP. This vulnerability affects Firefox < 141, Firefox ESR < 128.13, Firefox ESR < 140.1, Thunderbird < 141, Thunderbird < 128.13, and Thunderbird < 140.1.

CVSS3: 8.1
0%
Низкий
около 1 года назад
github логотип
GHSA-mm3g-858w-g8p8

Memory safety bugs present in Firefox 140 and Thunderbird 140. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 141 and Thunderbird < 141.

CVSS3: 9.8
0%
Низкий
около 1 года назад
github логотип
GHSA-7jcf-w576-jvj3

Memory safety bugs present in Firefox ESR 140.0, Thunderbird ESR 140.0, Firefox 140 and Thunderbird 140. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 141, Firefox ESR < 140.1, Thunderbird < 141, and Thunderbird < 140.1.

CVSS3: 8.8
0%
Низкий
около 1 года назад
nvd логотип
CVE-2025-8044

Memory safety bugs present in Firefox 140 and Thunderbird 140. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 141 and Thunderbird 141.

CVSS3: 9.8
0%
Низкий
около 1 года назад
debian логотип
CVE-2025-8044

Memory safety bugs present in Firefox 140 and Thunderbird 140. Some of ...

CVSS3: 9.8
0%
Низкий
около 1 года назад
nvd логотип
CVE-2025-8043

Focus incorrectly truncated URLs towards the beginning instead of around the origin. This vulnerability was fixed in Firefox 141.

CVSS3: 9.8
0%
Низкий
около 1 года назад
debian логотип
CVE-2025-8043

Focus incorrectly truncated URLs towards the beginning instead of arou ...

CVSS3: 9.8
0%
Низкий
около 1 года назад
nvd логотип
CVE-2025-8040

Memory safety bugs present in Firefox ESR 140.0, Thunderbird ESR 140.0, Firefox 140 and Thunderbird 140. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 141, Firefox ESR 140.1, Thunderbird 141, and Thunderbird 140.1.

CVSS3: 8.8
0%
Низкий
около 1 года назад
debian логотип
CVE-2025-8040

Memory safety bugs present in Firefox ESR 140.0, Thunderbird ESR 140.0 ...

CVSS3: 8.8
0%
Низкий
около 1 года назад

Уязвимостей на страницу


Поделиться