Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

debian логотип

CVE-2024-5701

около 2 лет назад

Memory safety bugs present in Firefox 126. Some of these bugs showed e ...

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2024-5701

около 2 лет назад

Memory safety bugs present in Firefox 126. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 127.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2024-5700

около 2 лет назад

Memory safety bugs present in Firefox 126, Firefox ESR 115.11, and Thu ...

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2024-5700

около 2 лет назад

Memory safety bugs present in Firefox 126, Firefox ESR 115.11, and Thunderbird 115.11. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 127, Firefox ESR < 115.12, and Thunderbird < 115.12.

CVSS3: 7
EPSS: Низкий
debian логотип

CVE-2024-5699

около 2 лет назад

In violation of spec, cookie prefixes such as `__Secure` were being ig ...

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2024-5699

около 2 лет назад

In violation of spec, cookie prefixes such as `__Secure` were being ignored if they were not correctly capitalized - by spec they should be checked with a case-insensitive comparison. This could have resulted in the browser not correctly honoring the behaviors specified by the prefix. This vulnerability affects Firefox < 127.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2024-5698

около 2 лет назад

By manipulating the fullscreen feature while opening a data-list, an a ...

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2024-5698

около 2 лет назад

By manipulating the fullscreen feature while opening a data-list, an attacker could have overlaid a text box over the address bar. This could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 127.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2024-5697

около 2 лет назад

A website was able to detect when a user took a screenshot of a page u ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2024-5697

около 2 лет назад

A website was able to detect when a user took a screenshot of a page using the built-in Screenshot functionality in Firefox. This vulnerability affects Firefox < 127.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2024-5701

Memory safety bugs present in Firefox 126. Some of these bugs showed e ...

CVSS3: 9.8
1%
Низкий
около 2 лет назад
nvd логотип
CVE-2024-5701

Memory safety bugs present in Firefox 126. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 127.

CVSS3: 9.8
1%
Низкий
около 2 лет назад
debian логотип
CVE-2024-5700

Memory safety bugs present in Firefox 126, Firefox ESR 115.11, and Thu ...

CVSS3: 7
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2024-5700

Memory safety bugs present in Firefox 126, Firefox ESR 115.11, and Thunderbird 115.11. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 127, Firefox ESR < 115.12, and Thunderbird < 115.12.

CVSS3: 7
0%
Низкий
около 2 лет назад
debian логотип
CVE-2024-5699

In violation of spec, cookie prefixes such as `__Secure` were being ig ...

CVSS3: 9.8
1%
Низкий
около 2 лет назад
nvd логотип
CVE-2024-5699

In violation of spec, cookie prefixes such as `__Secure` were being ignored if they were not correctly capitalized - by spec they should be checked with a case-insensitive comparison. This could have resulted in the browser not correctly honoring the behaviors specified by the prefix. This vulnerability affects Firefox < 127.

CVSS3: 9.8
1%
Низкий
около 2 лет назад
debian логотип
CVE-2024-5698

By manipulating the fullscreen feature while opening a data-list, an a ...

CVSS3: 6.1
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2024-5698

By manipulating the fullscreen feature while opening a data-list, an attacker could have overlaid a text box over the address bar. This could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 127.

CVSS3: 6.1
0%
Низкий
около 2 лет назад
debian логотип
CVE-2024-5697

A website was able to detect when a user took a screenshot of a page u ...

CVSS3: 4.3
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2024-5697

A website was able to detect when a user took a screenshot of a page using the built-in Screenshot functionality in Firefox. This vulnerability affects Firefox < 127.

CVSS3: 4.3
0%
Низкий
около 2 лет назад

Уязвимостей на страницу


Поделиться