Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

debian логотип

CVE-2025-0244

больше 1 года назад

When redirecting to an invalid protocol scheme, an attacker could spoo ...

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2025-0244

больше 1 года назад

When redirecting to an invalid protocol scheme, an attacker could spoof the address bar. *Note: This issue only affected Android operating systems. Other operating systems are unaffected.*. This vulnerability was fixed in Firefox 134.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2025-0243

больше 1 года назад

Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ES ...

CVSS3: 5.1
EPSS: Низкий
nvd логотип

CVE-2025-0243

больше 1 года назад

Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 128.5, and Thunderbird 128.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 134, Firefox ESR 128.6, Thunderbird 134, and Thunderbird 128.6.

CVSS3: 5.1
EPSS: Низкий
debian логотип

CVE-2025-0242

больше 1 года назад

Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ES ...

CVSS3: 6.5
EPSS: Средний
nvd логотип

CVE-2025-0242

больше 1 года назад

Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 115.18, Firefox ESR 128.5, Thunderbird 115.18, and Thunderbird 128.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 134, Firefox ESR 128.6, Firefox ESR 115.19, Thunderbird 134, and Thunderbird 128.6.

CVSS3: 6.5
EPSS: Средний
debian логотип

CVE-2025-0241

больше 1 года назад

When segmenting specially crafted text, segmentation would corrupt mem ...

CVSS3: 7.7
EPSS: Низкий
nvd логотип

CVE-2025-0241

больше 1 года назад

When segmenting specially crafted text, segmentation would corrupt memory leading to a potentially exploitable crash. This vulnerability was fixed in Firefox 134, Firefox ESR 128.6, Thunderbird 134, and Thunderbird 128.6.

CVSS3: 7.7
EPSS: Низкий
debian логотип

CVE-2025-0240

больше 1 года назад

Parsing a JavaScript module as JSON could, under some circumstances, c ...

CVSS3: 4
EPSS: Низкий
nvd логотип

CVE-2025-0240

больше 1 года назад

Parsing a JavaScript module as JSON could, under some circumstances, cause cross-compartment access, which may result in a use-after-free. This vulnerability was fixed in Firefox 134, Firefox ESR 128.6, Thunderbird 134, and Thunderbird 128.6.

CVSS3: 4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2025-0244

When redirecting to an invalid protocol scheme, an attacker could spoo ...

CVSS3: 5.3
7%
Низкий
больше 1 года назад
nvd логотип
CVE-2025-0244

When redirecting to an invalid protocol scheme, an attacker could spoof the address bar. *Note: This issue only affected Android operating systems. Other operating systems are unaffected.*. This vulnerability was fixed in Firefox 134.

CVSS3: 5.3
7%
Низкий
больше 1 года назад
debian логотип
CVE-2025-0243

Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ES ...

CVSS3: 5.1
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2025-0243

Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 128.5, and Thunderbird 128.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 134, Firefox ESR 128.6, Thunderbird 134, and Thunderbird 128.6.

CVSS3: 5.1
0%
Низкий
больше 1 года назад
debian логотип
CVE-2025-0242

Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ES ...

CVSS3: 6.5
13%
Средний
больше 1 года назад
nvd логотип
CVE-2025-0242

Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 115.18, Firefox ESR 128.5, Thunderbird 115.18, and Thunderbird 128.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 134, Firefox ESR 128.6, Firefox ESR 115.19, Thunderbird 134, and Thunderbird 128.6.

CVSS3: 6.5
13%
Средний
больше 1 года назад
debian логотип
CVE-2025-0241

When segmenting specially crafted text, segmentation would corrupt mem ...

CVSS3: 7.7
1%
Низкий
больше 1 года назад
nvd логотип
CVE-2025-0241

When segmenting specially crafted text, segmentation would corrupt memory leading to a potentially exploitable crash. This vulnerability was fixed in Firefox 134, Firefox ESR 128.6, Thunderbird 134, and Thunderbird 128.6.

CVSS3: 7.7
1%
Низкий
больше 1 года назад
debian логотип
CVE-2025-0240

Parsing a JavaScript module as JSON could, under some circumstances, c ...

CVSS3: 4
1%
Низкий
больше 1 года назад
nvd логотип
CVE-2025-0240

Parsing a JavaScript module as JSON could, under some circumstances, cause cross-compartment access, which may result in a use-after-free. This vulnerability was fixed in Firefox 134, Firefox ESR 128.6, Thunderbird 134, and Thunderbird 128.6.

CVSS3: 4
1%
Низкий
больше 1 года назад

Уязвимостей на страницу


Поделиться