Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 296
GHSA-fcrv-8vh3-4pg3
Memory safety bugs present in Firefox 149 and Thunderbird 149. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 150.
GHSA-rx3r-9q8p-8rrj
Other issue in the Storage: IndexedDB component. This vulnerability was fixed in Firefox 150 and Firefox ESR 140.10.
GHSA-gp6f-8rr3-wxrg
Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150.
GHSA-c2q7-642g-3vwr
Incorrect boundary conditions in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, and Firefox ESR 140.10.
GHSA-xm94-m277-f852
Invalid pointer in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150.
GHSA-q5x7-w9rr-q429
Mitigation bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 150.
GHSA-wpg5-vr6r-jrcr
Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150.
GHSA-88fc-5m2g-g6q2
Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150 and Firefox ESR 140.10.
GHSA-47f5-x8gg-g88g
Denial-of-service in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150.
GHSA-xp4p-9mc9-5c47
Other issue in the JavaScript Engine component. This vulnerability was fixed in Firefox 150.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
GHSA-fcrv-8vh3-4pg3 Memory safety bugs present in Firefox 149 and Thunderbird 149. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 150. | CVSS3: 7.5 | 0% Низкий | 3 месяца назад | |
GHSA-rx3r-9q8p-8rrj Other issue in the Storage: IndexedDB component. This vulnerability was fixed in Firefox 150 and Firefox ESR 140.10. | CVSS3: 6.5 | 5% Низкий | 3 месяца назад | |
GHSA-gp6f-8rr3-wxrg Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150. | CVSS3: 5.4 | 0% Низкий | 3 месяца назад | |
GHSA-c2q7-642g-3vwr Incorrect boundary conditions in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, and Firefox ESR 140.10. | CVSS3: 7.5 | 0% Низкий | 3 месяца назад | |
GHSA-xm94-m277-f852 Invalid pointer in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150. | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
GHSA-q5x7-w9rr-q429 Mitigation bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 150. | CVSS3: 9.8 | 0% Низкий | 3 месяца назад | |
GHSA-wpg5-vr6r-jrcr Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150. | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
GHSA-88fc-5m2g-g6q2 Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150 and Firefox ESR 140.10. | CVSS3: 9.8 | 0% Низкий | 3 месяца назад | |
GHSA-47f5-x8gg-g88g Denial-of-service in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150. | CVSS3: 7.5 | 0% Низкий | 3 месяца назад | |
GHSA-xp4p-9mc9-5c47 Other issue in the JavaScript Engine component. This vulnerability was fixed in Firefox 150. | CVSS3: 5.3 | 0% Низкий | 3 месяца назад |
Уязвимостей на страницу