Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

nvd логотип

CVE-2023-5726

почти 3 года назад

A website could have obscured the full screen notification by using the file open dialog. This could have led to user confusion and possible spoofing attacks. *Note: This issue only affected macOS operating systems. Other operating systems are unaffected.* This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2023-5725

почти 3 года назад

A malicious installed WebExtension could open arbitrary URLs, which un ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-5725

почти 3 года назад

A malicious installed WebExtension could open arbitrary URLs, which under the right circumstance could be leveraged to collect sensitive user data. This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2023-5724

почти 3 года назад

Drivers are not always robust to extremely large draw calls and in som ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2023-5724

почти 3 года назад

Drivers are not always robust to extremely large draw calls and in some cases this scenario could have led to a crash. This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2023-5723

почти 3 года назад

An attacker with temporary script access to a site could have set a co ...

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2023-5723

почти 3 года назад

An attacker with temporary script access to a site could have set a cookie containing invalid characters using `document.cookie` that could have led to unknown errors. This vulnerability affects Firefox < 119.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2023-5722

почти 3 года назад

Using iterative requests an attacker was able to learn the size of an ...

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2023-5722

почти 3 года назад

Using iterative requests an attacker was able to learn the size of an opaque response, as well as the contents of a server-supplied Vary header. This vulnerability affects Firefox < 119.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2023-5721

почти 3 года назад

It was possible for certain browser prompts and dialogs to be activate ...

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2023-5726

A website could have obscured the full screen notification by using the file open dialog. This could have led to user confusion and possible spoofing attacks. *Note: This issue only affected macOS operating systems. Other operating systems are unaffected.* This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 4.3
1%
Низкий
почти 3 года назад
debian логотип
CVE-2023-5725

A malicious installed WebExtension could open arbitrary URLs, which un ...

CVSS3: 4.3
1%
Низкий
почти 3 года назад
nvd логотип
CVE-2023-5725

A malicious installed WebExtension could open arbitrary URLs, which under the right circumstance could be leveraged to collect sensitive user data. This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 4.3
1%
Низкий
почти 3 года назад
debian логотип
CVE-2023-5724

Drivers are not always robust to extremely large draw calls and in som ...

CVSS3: 7.5
2%
Низкий
почти 3 года назад
nvd логотип
CVE-2023-5724

Drivers are not always robust to extremely large draw calls and in some cases this scenario could have led to a crash. This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

CVSS3: 7.5
2%
Низкий
почти 3 года назад
debian логотип
CVE-2023-5723

An attacker with temporary script access to a site could have set a co ...

CVSS3: 5.3
1%
Низкий
почти 3 года назад
nvd логотип
CVE-2023-5723

An attacker with temporary script access to a site could have set a cookie containing invalid characters using `document.cookie` that could have led to unknown errors. This vulnerability affects Firefox < 119.

CVSS3: 5.3
1%
Низкий
почти 3 года назад
debian логотип
CVE-2023-5722

Using iterative requests an attacker was able to learn the size of an ...

CVSS3: 5.3
1%
Низкий
почти 3 года назад
nvd логотип
CVE-2023-5722

Using iterative requests an attacker was able to learn the size of an opaque response, as well as the contents of a server-supplied Vary header. This vulnerability affects Firefox < 119.

CVSS3: 5.3
1%
Низкий
почти 3 года назад
debian логотип
CVE-2023-5721

It was possible for certain browser prompts and dialogs to be activate ...

CVSS3: 4.3
1%
Низкий
почти 3 года назад

Уязвимостей на страницу


Поделиться