Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 500
CVE-2020-1933
A XSS vulnerability was found in Apache NiFi 1.0.0 to 1.10.0. Malicious scripts could be injected to the UI through action by an unaware authenticated user in Firefox. Did not appear to occur in other browsers.
CVE-2011-2669
Mozilla Firefox prior to 3.6 has a DoS vulnerability due to an issue in the validation of certificates.
CVE-2011-2669
Mozilla Firefox prior to 3.6 has a DoS vulnerability due to an issue i ...
CVE-2011-2668
Mozilla Firefox through 1.5.0.3 has a vulnerability in processing the content-length header
CVE-2011-2668
Mozilla Firefox through 1.5.0.3 has a vulnerability in processing the ...
CVE-2011-2669
Mozilla Firefox prior to 3.6 has a DoS vulnerability due to an issue in the validation of certificates.
CVE-2011-2668
Mozilla Firefox through 1.5.0.3 has a vulnerability in processing the content-length header
BDU:2023-07822
Уязвимость веб-браузеров Firefox и Firefox ESR, связанная с записью за границами буфера, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
CVE-2019-17020
If an XML file is served with a Content Security Policy and the XML file includes an XSL stylesheet, the Content Security Policy will not be applied to the contents of the XSL stylesheet. If the XSL sheet e.g. includes JavaScript, it would bypass any of the restrictions of the Content Security Policy applied to the XML document. This vulnerability affects Firefox < 72.
CVE-2011-2670
Mozilla Firefox before 3.6 is vulnerable to XSS via the rendering of Cascading Style Sheets
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2020-1933 A XSS vulnerability was found in Apache NiFi 1.0.0 to 1.10.0. Malicious scripts could be injected to the UI through action by an unaware authenticated user in Firefox. Did not appear to occur in other browsers. | CVSS3: 6.1 | 3% Низкий | больше 6 лет назад | |
CVE-2011-2669 Mozilla Firefox prior to 3.6 has a DoS vulnerability due to an issue in the validation of certificates. | CVSS3: 6.5 | 1% Низкий | больше 6 лет назад | |
CVE-2011-2669 Mozilla Firefox prior to 3.6 has a DoS vulnerability due to an issue i ... | CVSS3: 6.5 | 1% Низкий | больше 6 лет назад | |
CVE-2011-2668 Mozilla Firefox through 1.5.0.3 has a vulnerability in processing the content-length header | CVSS3: 8.8 | 1% Низкий | больше 6 лет назад | |
CVE-2011-2668 Mozilla Firefox through 1.5.0.3 has a vulnerability in processing the ... | CVSS3: 8.8 | 1% Низкий | больше 6 лет назад | |
CVE-2011-2669 Mozilla Firefox prior to 3.6 has a DoS vulnerability due to an issue in the validation of certificates. | CVSS3: 6.5 | 1% Низкий | больше 6 лет назад | |
CVE-2011-2668 Mozilla Firefox through 1.5.0.3 has a vulnerability in processing the content-length header | CVSS3: 8.8 | 1% Низкий | больше 6 лет назад | |
BDU:2023-07822 Уязвимость веб-браузеров Firefox и Firefox ESR, связанная с записью за границами буфера, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании | CVSS3: 8.8 | 2% Низкий | больше 6 лет назад | |
CVE-2019-17020 If an XML file is served with a Content Security Policy and the XML file includes an XSL stylesheet, the Content Security Policy will not be applied to the contents of the XSL stylesheet. If the XSL sheet e.g. includes JavaScript, it would bypass any of the restrictions of the Content Security Policy applied to the XML document. This vulnerability affects Firefox < 72. | CVSS3: 6.5 | 1% Низкий | больше 6 лет назад | |
CVE-2011-2670 Mozilla Firefox before 3.6 is vulnerable to XSS via the rendering of Cascading Style Sheets | CVSS3: 6.1 | 1% Низкий | больше 6 лет назад |
Уязвимостей на страницу