Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 427
GHSA-xppv-6m94-c745
Same-origin policy bypass in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, and Firefox ESR 153.1.
GHSA-95wr-53r3-2jx3
Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 154 and Firefox ESR 153.1.
GHSA-2gp7-2525-93fm
Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, and Firefox ESR 153.1.
GHSA-67f4-mqxj-f332
Information disclosure in the DOM: UI Events & Focus Handling component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1.
GHSA-8r32-h7pp-v9x9
Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1.
GHSA-ppf2-9cwv-hpf8
Same-origin policy bypass in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1.
GHSA-7p8c-3v22-58jp
Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1.
GHSA-c224-pmx6-qhpm
Privilege escalation in the Shell Integration component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1.
GHSA-8c9h-mhqx-6q3f
Information disclosure due to side-channel in the Storage: Cache API component. This vulnerability was fixed in Firefox 154 and Firefox ESR 153.1.
GHSA-h83v-xrj2-hcmq
Privilege escalation in the Request Handling component. This vulnerability was fixed in Firefox 154 and Firefox ESR 153.1.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
GHSA-xppv-6m94-c745 Same-origin policy bypass in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, and Firefox ESR 153.1. | CVSS3: 5.4 | 0% Низкий | 29 дней назад | |
GHSA-95wr-53r3-2jx3 Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 154 and Firefox ESR 153.1. | CVSS3: 5.4 | 0% Низкий | 29 дней назад | |
GHSA-2gp7-2525-93fm Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, and Firefox ESR 153.1. | CVSS3: 8.8 | 0% Низкий | 29 дней назад | |
GHSA-67f4-mqxj-f332 Information disclosure in the DOM: UI Events & Focus Handling component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1. | CVSS3: 4.3 | 0% Низкий | 29 дней назад | |
GHSA-8r32-h7pp-v9x9 Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1. | CVSS3: 5.4 | 0% Низкий | 29 дней назад | |
GHSA-ppf2-9cwv-hpf8 Same-origin policy bypass in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1. | CVSS3: 5.4 | 0% Низкий | 29 дней назад | |
GHSA-7p8c-3v22-58jp Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1. | CVSS3: 9.8 | 0% Низкий | 29 дней назад | |
GHSA-c224-pmx6-qhpm Privilege escalation in the Shell Integration component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1. | CVSS3: 8.8 | 0% Низкий | 29 дней назад | |
GHSA-8c9h-mhqx-6q3f Information disclosure due to side-channel in the Storage: Cache API component. This vulnerability was fixed in Firefox 154 and Firefox ESR 153.1. | CVSS3: 7.5 | 0% Низкий | 29 дней назад | |
GHSA-h83v-xrj2-hcmq Privilege escalation in the Request Handling component. This vulnerability was fixed in Firefox 154 and Firefox ESR 153.1. | CVSS3: 8.8 | 0% Низкий | 29 дней назад |
Уязвимостей на страницу