Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 337
CVE-2023-28160
When following a redirect to a publicly accessible web extension file, ...
CVE-2023-28160
When following a redirect to a publicly accessible web extension file, the URL may have been translated to the actual local path, leaking potentially sensitive information. This vulnerability affects Firefox < 111.
CVE-2023-28159
The fullscreen notification could have been hidden on Firefox for Andr ...
CVE-2023-28159
The fullscreen notification could have been hidden on Firefox for Android by using download popups, resulting in potential user confusion or spoofing attacks. <br>*This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 111.
CVE-2023-25752
When accessing throttled streams, the count of available bytes needed ...
CVE-2023-25752
When accessing throttled streams, the count of available bytes needed to be checked in the calling function to be within bounds. This may have lead future code to be incorrect and vulnerable. This vulnerability affects Firefox < 111, Firefox ESR < 102.9, and Thunderbird < 102.9.
CVE-2023-25751
Sometimes, when invalidating JIT code while following an iterator, the ...
CVE-2023-25751
Sometimes, when invalidating JIT code while following an iterator, the newly generated code could be overwritten incorrectly. This could lead to a potentially exploitable crash. This vulnerability affects Firefox < 111, Firefox ESR < 102.9, and Thunderbird < 102.9.
CVE-2023-25750
Under certain circumstances, a ServiceWorker's offline cache may have ...
CVE-2023-25750
Under certain circumstances, a ServiceWorker's offline cache may have leaked to the file system when using private browsing mode. This vulnerability affects Firefox < 111.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2023-28160 When following a redirect to a publicly accessible web extension file, ... | CVSS3: 6.5 | 1% Низкий | около 3 лет назад | |
CVE-2023-28160 When following a redirect to a publicly accessible web extension file, the URL may have been translated to the actual local path, leaking potentially sensitive information. This vulnerability affects Firefox < 111. | CVSS3: 6.5 | 1% Низкий | около 3 лет назад | |
CVE-2023-28159 The fullscreen notification could have been hidden on Firefox for Andr ... | CVSS3: 4.3 | 0% Низкий | около 3 лет назад | |
CVE-2023-28159 The fullscreen notification could have been hidden on Firefox for Android by using download popups, resulting in potential user confusion or spoofing attacks. <br>*This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 111. | CVSS3: 4.3 | 0% Низкий | около 3 лет назад | |
CVE-2023-25752 When accessing throttled streams, the count of available bytes needed ... | CVSS3: 6.5 | 1% Низкий | около 3 лет назад | |
CVE-2023-25752 When accessing throttled streams, the count of available bytes needed to be checked in the calling function to be within bounds. This may have lead future code to be incorrect and vulnerable. This vulnerability affects Firefox < 111, Firefox ESR < 102.9, and Thunderbird < 102.9. | CVSS3: 6.5 | 1% Низкий | около 3 лет назад | |
CVE-2023-25751 Sometimes, when invalidating JIT code while following an iterator, the ... | CVSS3: 6.5 | 1% Низкий | около 3 лет назад | |
CVE-2023-25751 Sometimes, when invalidating JIT code while following an iterator, the newly generated code could be overwritten incorrectly. This could lead to a potentially exploitable crash. This vulnerability affects Firefox < 111, Firefox ESR < 102.9, and Thunderbird < 102.9. | CVSS3: 6.5 | 1% Низкий | около 3 лет назад | |
CVE-2023-25750 Under certain circumstances, a ServiceWorker's offline cache may have ... | CVSS3: 4.3 | 0% Низкий | около 3 лет назад | |
CVE-2023-25750 Under certain circumstances, a ServiceWorker's offline cache may have leaked to the file system when using private browsing mode. This vulnerability affects Firefox < 111. | CVSS3: 4.3 | 0% Низкий | около 3 лет назад |
Уязвимостей на страницу