Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 561

github логотип

GHSA-2jvx-947v-x43p

больше 4 лет назад

Using XMLHttpRequest, an attacker could have identified installed applications by probing error messages for loading external protocols. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-6257-2grx-5hjf

больше 4 лет назад

Documents loaded with the CSP sandbox directive could have escaped the sandbox's script restriction by embedding additional content. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-7w2r-8gq9-28xx

больше 4 лет назад

When receiving a URL through a SEND intent, Firefox would have searched for the text, but subsequent usages of the address bar might have caused the URL to load unintentionally, which could lead to XSS and spoofing attacks. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 95.

EPSS: Низкий
github логотип

GHSA-6r28-c2wr-jmx6

больше 4 лет назад

Using the Location API in a loop could have caused severe application hangs and crashes. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-6fv3-g7rx-8q2q

больше 4 лет назад

It was possible to recreate previous cursor spoofing attacks against users with a zoomed native cursor. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2021-43546

больше 4 лет назад

It was possible to recreate previous cursor spoofing attacks against users with a zoomed native cursor. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2021-43546

больше 4 лет назад

It was possible to recreate previous cursor spoofing attacks against u ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2021-43545

больше 4 лет назад

Using the Location API in a loop could have caused severe application hangs and crashes. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2021-43545

больше 4 лет назад

Using the Location API in a loop could have caused severe application ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2021-43544

больше 4 лет назад

When receiving a URL through a SEND intent, Firefox would have searched for the text, but subsequent usages of the address bar might have caused the URL to load unintentionally, which could lead to XSS and spoofing attacks. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 95.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
github логотип
GHSA-2jvx-947v-x43p

Using XMLHttpRequest, an attacker could have identified installed applications by probing error messages for loading external protocols. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

CVSS3: 6.5
2%
Низкий
больше 4 лет назад
github логотип
GHSA-6257-2grx-5hjf

Documents loaded with the CSP sandbox directive could have escaped the sandbox's script restriction by embedding additional content. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

CVSS3: 6.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-7w2r-8gq9-28xx

When receiving a URL through a SEND intent, Firefox would have searched for the text, but subsequent usages of the address bar might have caused the URL to load unintentionally, which could lead to XSS and spoofing attacks. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 95.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-6r28-c2wr-jmx6

Using the Location API in a loop could have caused severe application hangs and crashes. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

CVSS3: 6.5
2%
Низкий
больше 4 лет назад
github логотип
GHSA-6fv3-g7rx-8q2q

It was possible to recreate previous cursor spoofing attacks against users with a zoomed native cursor. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

CVSS3: 4.3
1%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-43546

It was possible to recreate previous cursor spoofing attacks against users with a zoomed native cursor. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

CVSS3: 4.3
1%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-43546

It was possible to recreate previous cursor spoofing attacks against u ...

CVSS3: 4.3
1%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-43545

Using the Location API in a loop could have caused severe application hangs and crashes. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

CVSS3: 6.5
2%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-43545

Using the Location API in a loop could have caused severe application ...

CVSS3: 6.5
2%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-43544

When receiving a URL through a SEND intent, Firefox would have searched for the text, but subsequent usages of the address bar might have caused the URL to load unintentionally, which could lead to XSS and spoofing attacks. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 95.

CVSS3: 6.1
1%
Низкий
больше 4 лет назад

Уязвимостей на страницу


Поделиться