Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 561

nvd логотип

CVE-2021-23999

около 5 лет назад

If a Blob URL was loaded through some unusual user interaction, it could have been loaded by the System Principal and granted additional privileges that should not be granted to web content. This vulnerability affects Firefox ESR < 78.10, Thunderbird < 78.10, and Firefox < 88.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2021-23999

около 5 лет назад

If a Blob URL was loaded through some unusual user interaction, it cou ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2021-23998

около 5 лет назад

Through complicated navigations with new windows, an HTTP page could have inherited a secure lock icon from an HTTPS page. This vulnerability affects Firefox ESR < 78.10, Thunderbird < 78.10, and Firefox < 88.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2021-23998

около 5 лет назад

Through complicated navigations with new windows, an HTTP page could h ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2021-23997

около 5 лет назад

Due to unexpected data type conversions, a use-after-free could have occurred when interacting with the font cache. We presume that with enough effort this could have been exploited to run arbitrary code. This vulnerability affects Firefox < 88.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2021-23997

около 5 лет назад

Due to unexpected data type conversions, a use-after-free could have o ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2021-23996

около 5 лет назад

By utilizing 3D CSS in conjunction with Javascript, content could have been rendered outside the webpage's viewport, resulting in a spoofing attack that could have been used for phishing or other attacks on a user. This vulnerability affects Firefox < 88.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2021-23996

около 5 лет назад

By utilizing 3D CSS in conjunction with Javascript, content could have ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2021-23995

около 5 лет назад

When Responsive Design Mode was enabled, it used references to objects that were previously freed. We presume that with enough effort this could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 78.10, Thunderbird < 78.10, and Firefox < 88.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2021-23995

около 5 лет назад

When Responsive Design Mode was enabled, it used references to objects ...

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2021-23999

If a Blob URL was loaded through some unusual user interaction, it could have been loaded by the System Principal and granted additional privileges that should not be granted to web content. This vulnerability affects Firefox ESR < 78.10, Thunderbird < 78.10, and Firefox < 88.

CVSS3: 8.8
1%
Низкий
около 5 лет назад
debian логотип
CVE-2021-23999

If a Blob URL was loaded through some unusual user interaction, it cou ...

CVSS3: 8.8
1%
Низкий
около 5 лет назад
nvd логотип
CVE-2021-23998

Through complicated navigations with new windows, an HTTP page could have inherited a secure lock icon from an HTTPS page. This vulnerability affects Firefox ESR < 78.10, Thunderbird < 78.10, and Firefox < 88.

CVSS3: 6.5
1%
Низкий
около 5 лет назад
debian логотип
CVE-2021-23998

Through complicated navigations with new windows, an HTTP page could h ...

CVSS3: 6.5
1%
Низкий
около 5 лет назад
nvd логотип
CVE-2021-23997

Due to unexpected data type conversions, a use-after-free could have occurred when interacting with the font cache. We presume that with enough effort this could have been exploited to run arbitrary code. This vulnerability affects Firefox < 88.

CVSS3: 8.8
1%
Низкий
около 5 лет назад
debian логотип
CVE-2021-23997

Due to unexpected data type conversions, a use-after-free could have o ...

CVSS3: 8.8
1%
Низкий
около 5 лет назад
nvd логотип
CVE-2021-23996

By utilizing 3D CSS in conjunction with Javascript, content could have been rendered outside the webpage's viewport, resulting in a spoofing attack that could have been used for phishing or other attacks on a user. This vulnerability affects Firefox < 88.

CVSS3: 6.5
1%
Низкий
около 5 лет назад
debian логотип
CVE-2021-23996

By utilizing 3D CSS in conjunction with Javascript, content could have ...

CVSS3: 6.5
1%
Низкий
около 5 лет назад
nvd логотип
CVE-2021-23995

When Responsive Design Mode was enabled, it used references to objects that were previously freed. We presume that with enough effort this could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 78.10, Thunderbird < 78.10, and Firefox < 88.

CVSS3: 8.8
1%
Низкий
около 5 лет назад
debian логотип
CVE-2021-23995

When Responsive Design Mode was enabled, it used references to objects ...

CVSS3: 8.8
1%
Низкий
около 5 лет назад

Уязвимостей на страницу


Поделиться