Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

nvd логотип

CVE-2024-6608

около 2 лет назад

It was possible to move the cursor using pointerlock from an iframe. This allowed moving the cursor outside of the viewport and the Firefox window. This vulnerability affects Firefox < 128 and Thunderbird < 128.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2024-6607

около 2 лет назад

It was possible to prevent a user from exiting pointerlock when pressi ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2024-6607

около 2 лет назад

It was possible to prevent a user from exiting pointerlock when pressing escape and to overlay customValidity notifications from a `&lt;select&gt;` element over certain permission prompts. This could be used to confuse a user into giving a site unintended permissions. This vulnerability affects Firefox < 128 and Thunderbird < 128.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2024-6606

около 2 лет назад

Clipboard code failed to check the index on an array access. This coul ...

CVSS3: 8.2
EPSS: Низкий
nvd логотип

CVE-2024-6606

около 2 лет назад

Clipboard code failed to check the index on an array access. This could have led to an out-of-bounds read. This vulnerability affects Firefox < 128 and Thunderbird < 128.

CVSS3: 8.2
EPSS: Низкий
debian логотип

CVE-2024-6605

около 2 лет назад

Firefox Android allowed immediate interaction with permission prompts. ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2024-6605

около 2 лет назад

Firefox Android allowed immediate interaction with permission prompts. This could be used for tapjacking. This vulnerability affects Firefox < 128.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2024-6604

около 2 лет назад

Memory safety bugs present in Firefox 127, Firefox ESR 115.12, and Thu ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-6604

около 2 лет назад

Memory safety bugs present in Firefox 127, Firefox ESR 115.12, and Thunderbird 115.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2024-6603

около 2 лет назад

In an out-of-memory scenario an allocation could fail but free would h ...

CVSS3: 7.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2024-6608

It was possible to move the cursor using pointerlock from an iframe. This allowed moving the cursor outside of the viewport and the Firefox window. This vulnerability affects Firefox < 128 and Thunderbird < 128.

CVSS3: 4.3
0%
Низкий
около 2 лет назад
debian логотип
CVE-2024-6607

It was possible to prevent a user from exiting pointerlock when pressi ...

CVSS3: 8.8
1%
Низкий
около 2 лет назад
nvd логотип
CVE-2024-6607

It was possible to prevent a user from exiting pointerlock when pressing escape and to overlay customValidity notifications from a `&lt;select&gt;` element over certain permission prompts. This could be used to confuse a user into giving a site unintended permissions. This vulnerability affects Firefox < 128 and Thunderbird < 128.

CVSS3: 8.8
1%
Низкий
около 2 лет назад
debian логотип
CVE-2024-6606

Clipboard code failed to check the index on an array access. This coul ...

CVSS3: 8.2
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2024-6606

Clipboard code failed to check the index on an array access. This could have led to an out-of-bounds read. This vulnerability affects Firefox < 128 and Thunderbird < 128.

CVSS3: 8.2
0%
Низкий
около 2 лет назад
debian логотип
CVE-2024-6605

Firefox Android allowed immediate interaction with permission prompts. ...

CVSS3: 8.8
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2024-6605

Firefox Android allowed immediate interaction with permission prompts. This could be used for tapjacking. This vulnerability affects Firefox < 128.

CVSS3: 8.8
0%
Низкий
около 2 лет назад
debian логотип
CVE-2024-6604

Memory safety bugs present in Firefox 127, Firefox ESR 115.12, and Thu ...

CVSS3: 7.5
1%
Низкий
около 2 лет назад
nvd логотип
CVE-2024-6604

Memory safety bugs present in Firefox 127, Firefox ESR 115.12, and Thunderbird 115.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.

CVSS3: 7.5
1%
Низкий
около 2 лет назад
debian логотип
CVE-2024-6603

In an out-of-memory scenario an allocation could fail but free would h ...

CVSS3: 7.4
1%
Низкий
около 2 лет назад

Уязвимостей на страницу


Поделиться