Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 545

nvd логотип

CVE-2020-12416

около 6 лет назад

A VideoStreamEncoder may have been freed in a race condition with VideoBroadcaster::AddOrUpdateSink, resulting in a use-after-free, memory corruption, and a potentially exploitable crash. This vulnerability affects Firefox < 78.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2020-12416

около 6 лет назад

A VideoStreamEncoder may have been freed in a race condition with Vide ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2020-12415

около 6 лет назад

When "%2F" was present in a manifest URL, Firefox's AppCache behavior may have become confused and allowed a manifest to be served from a subdirectory. This could cause the appcache to be used to service requests for the top level directory. This vulnerability affects Firefox < 78.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2020-12415

около 6 лет назад

When "%2F" was present in a manifest URL, Firefox's AppCache behavior ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2020-12412

около 6 лет назад

By navigating a tab using the history API, an attacker could cause the address bar to display the incorrect domain (with the https:// scheme, a blocked port number such as '1', and without a lock icon) while controlling the page contents. This vulnerability affects Firefox < 70.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2020-12412

около 6 лет назад

By navigating a tab using the history API, an attacker could cause the ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2020-12411

около 6 лет назад

Mozilla developers reported memory safety bugs present in Firefox 76. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 77.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2020-12411

около 6 лет назад

Mozilla developers reported memory safety bugs present in Firefox 76. ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2020-12410

около 6 лет назад

Mozilla developers reported memory safety bugs present in Firefox 76 and Firefox ESR 68.8. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Thunderbird < 68.9.0, Firefox < 77, and Firefox ESR < 68.9.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2020-12410

около 6 лет назад

Mozilla developers reported memory safety bugs present in Firefox 76 a ...

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2020-12416

A VideoStreamEncoder may have been freed in a race condition with VideoBroadcaster::AddOrUpdateSink, resulting in a use-after-free, memory corruption, and a potentially exploitable crash. This vulnerability affects Firefox < 78.

CVSS3: 8.8
1%
Низкий
около 6 лет назад
debian логотип
CVE-2020-12416

A VideoStreamEncoder may have been freed in a race condition with Vide ...

CVSS3: 8.8
1%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-12415

When "%2F" was present in a manifest URL, Firefox's AppCache behavior may have become confused and allowed a manifest to be served from a subdirectory. This could cause the appcache to be used to service requests for the top level directory. This vulnerability affects Firefox < 78.

CVSS3: 6.5
1%
Низкий
около 6 лет назад
debian логотип
CVE-2020-12415

When "%2F" was present in a manifest URL, Firefox's AppCache behavior ...

CVSS3: 6.5
1%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-12412

By navigating a tab using the history API, an attacker could cause the address bar to display the incorrect domain (with the https:// scheme, a blocked port number such as '1', and without a lock icon) while controlling the page contents. This vulnerability affects Firefox < 70.

CVSS3: 4.3
1%
Низкий
около 6 лет назад
debian логотип
CVE-2020-12412

By navigating a tab using the history API, an attacker could cause the ...

CVSS3: 4.3
1%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-12411

Mozilla developers reported memory safety bugs present in Firefox 76. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 77.

CVSS3: 8.8
1%
Низкий
около 6 лет назад
debian логотип
CVE-2020-12411

Mozilla developers reported memory safety bugs present in Firefox 76. ...

CVSS3: 8.8
1%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-12410

Mozilla developers reported memory safety bugs present in Firefox 76 and Firefox ESR 68.8. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Thunderbird < 68.9.0, Firefox < 77, and Firefox ESR < 68.9.

CVSS3: 8.8
2%
Низкий
около 6 лет назад
debian логотип
CVE-2020-12410

Mozilla developers reported memory safety bugs present in Firefox 76 a ...

CVSS3: 8.8
2%
Низкий
около 6 лет назад

Уязвимостей на страницу


Поделиться