Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 561
CVE-2021-23961
Further techniques that built on the slipstream research combined with ...
CVE-2021-23960
Performing garbage collection on re-declared JavaScript variables resulted in a user-after-poison, and a potentially exploitable crash. This vulnerability affects Firefox < 85, Thunderbird < 78.7, and Firefox ESR < 78.7.
CVE-2021-23960
Performing garbage collection on re-declared JavaScript variables resu ...
CVE-2021-23959
An XSS bug in internal error pages could have led to various spoofing attacks, including other error pages and the address bar. Note: This issue only affected Firefox for Android. Other operating systems are unaffected. This vulnerability affects Firefox < 85.
CVE-2021-23959
An XSS bug in internal error pages could have led to various spoofing ...
CVE-2021-23958
The browser could have been confused into transferring a screen sharing state into another tab, which would leak unintended information. This vulnerability affects Firefox < 85.
CVE-2021-23958
The browser could have been confused into transferring a screen sharin ...
CVE-2021-23957
Navigations through the Android-specific `intent` URL scheme could have been misused to escape iframe sandbox. Note: This issue only affected Firefox for Android. Other operating systems are unaffected. This vulnerability affects Firefox < 85.
CVE-2021-23957
Navigations through the Android-specific `intent` URL scheme could hav ...
CVE-2021-23956
An ambiguous file picker design could have confused users who intended to select and upload a single file into uploading a whole directory. This was addressed by adding a new prompt. This vulnerability affects Firefox < 85.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2021-23961 Further techniques that built on the slipstream research combined with ... | CVSS3: 7.4 | 1% Низкий | больше 5 лет назад | |
CVE-2021-23960 Performing garbage collection on re-declared JavaScript variables resulted in a user-after-poison, and a potentially exploitable crash. This vulnerability affects Firefox < 85, Thunderbird < 78.7, and Firefox ESR < 78.7. | CVSS3: 8.8 | 1% Низкий | больше 5 лет назад | |
CVE-2021-23960 Performing garbage collection on re-declared JavaScript variables resu ... | CVSS3: 8.8 | 1% Низкий | больше 5 лет назад | |
CVE-2021-23959 An XSS bug in internal error pages could have led to various spoofing attacks, including other error pages and the address bar. Note: This issue only affected Firefox for Android. Other operating systems are unaffected. This vulnerability affects Firefox < 85. | CVSS3: 6.1 | 1% Низкий | больше 5 лет назад | |
CVE-2021-23959 An XSS bug in internal error pages could have led to various spoofing ... | CVSS3: 6.1 | 1% Низкий | больше 5 лет назад | |
CVE-2021-23958 The browser could have been confused into transferring a screen sharing state into another tab, which would leak unintended information. This vulnerability affects Firefox < 85. | CVSS3: 6.5 | 1% Низкий | больше 5 лет назад | |
CVE-2021-23958 The browser could have been confused into transferring a screen sharin ... | CVSS3: 6.5 | 1% Низкий | больше 5 лет назад | |
CVE-2021-23957 Navigations through the Android-specific `intent` URL scheme could have been misused to escape iframe sandbox. Note: This issue only affected Firefox for Android. Other operating systems are unaffected. This vulnerability affects Firefox < 85. | CVSS3: 7.4 | 1% Низкий | больше 5 лет назад | |
CVE-2021-23957 Navigations through the Android-specific `intent` URL scheme could hav ... | CVSS3: 7.4 | 1% Низкий | больше 5 лет назад | |
CVE-2021-23956 An ambiguous file picker design could have confused users who intended to select and upload a single file into uploading a whole directory. This was addressed by adding a new prompt. This vulnerability affects Firefox < 85. | CVSS3: 6.5 | 1% Низкий | больше 5 лет назад |
Уязвимостей на страницу