Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 337
CVE-2024-0749
A phishing site could have repurposed an `about:` dialog to show phishing content with an incorrect origin in the address bar. This vulnerability affects Firefox < 122 and Thunderbird < 115.7.
CVE-2024-0748
A compromised content process could have updated the document URI. Thi ...
CVE-2024-0748
A compromised content process could have updated the document URI. This could have allowed an attacker to set an arbitrary URI in the address bar or history. This vulnerability affects Firefox < 122.
CVE-2024-0747
When a parent page loaded a child in an iframe with `unsafe-inline`, t ...
CVE-2024-0747
When a parent page loaded a child in an iframe with `unsafe-inline`, the parent Content Security Policy could have overridden the child Content Security Policy. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7.
CVE-2024-0746
A Linux user opening the print preview dialog could have caused the br ...
CVE-2024-0746
A Linux user opening the print preview dialog could have caused the browser to crash. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7.
CVE-2024-0745
The WebAudio `OscillatorNode` object was susceptible to a stack buffer ...
CVE-2024-0745
The WebAudio `OscillatorNode` object was susceptible to a stack buffer overflow. This could have led to a potentially exploitable crash. This vulnerability affects Firefox < 122.
CVE-2024-0744
In some circumstances, JIT compiled code could have dereferenced a wil ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2024-0749 A phishing site could have repurposed an `about:` dialog to show phishing content with an incorrect origin in the address bar. This vulnerability affects Firefox < 122 and Thunderbird < 115.7. | CVSS3: 4.3 | 0% Низкий | больше 2 лет назад | |
CVE-2024-0748 A compromised content process could have updated the document URI. Thi ... | CVSS3: 4.3 | 0% Низкий | больше 2 лет назад | |
CVE-2024-0748 A compromised content process could have updated the document URI. This could have allowed an attacker to set an arbitrary URI in the address bar or history. This vulnerability affects Firefox < 122. | CVSS3: 4.3 | 0% Низкий | больше 2 лет назад | |
CVE-2024-0747 When a parent page loaded a child in an iframe with `unsafe-inline`, t ... | CVSS3: 6.5 | 1% Низкий | больше 2 лет назад | |
CVE-2024-0747 When a parent page loaded a child in an iframe with `unsafe-inline`, the parent Content Security Policy could have overridden the child Content Security Policy. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7. | CVSS3: 6.5 | 1% Низкий | больше 2 лет назад | |
CVE-2024-0746 A Linux user opening the print preview dialog could have caused the br ... | CVSS3: 6.5 | 1% Низкий | больше 2 лет назад | |
CVE-2024-0746 A Linux user opening the print preview dialog could have caused the browser to crash. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7. | CVSS3: 6.5 | 1% Низкий | больше 2 лет назад | |
CVE-2024-0745 The WebAudio `OscillatorNode` object was susceptible to a stack buffer ... | CVSS3: 8.8 | 1% Низкий | больше 2 лет назад | |
CVE-2024-0745 The WebAudio `OscillatorNode` object was susceptible to a stack buffer overflow. This could have led to a potentially exploitable crash. This vulnerability affects Firefox < 122. | CVSS3: 8.8 | 1% Низкий | больше 2 лет назад | |
CVE-2024-0744 In some circumstances, JIT compiled code could have dereferenced a wil ... | CVSS3: 7.5 | 1% Низкий | больше 2 лет назад |
Уязвимостей на страницу