Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 500

debian логотип

CVE-2019-17018

больше 6 лет назад

When in Private Browsing Mode on Windows 10, the Windows keyboard may ...

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2019-17017

больше 6 лет назад

Due to a missing case handling object types, a type confusion vulnerability could occur, resulting in a crash. We presume that with enough effort that it could be exploited to run arbitrary code. This vulnerability affects Firefox ESR < 68.4 and Firefox < 72.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2019-17017

больше 6 лет назад

Due to a missing case handling object types, a type confusion vulnerab ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2019-17016

больше 6 лет назад

When pasting a &lt;style&gt; tag from the clipboard into a rich text editor, the CSS sanitizer incorrectly rewrites a @namespace rule. This could allow for injection into certain types of websites resulting in data exfiltration. This vulnerability affects Firefox ESR < 68.4 and Firefox < 72.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2019-17016

больше 6 лет назад

When pasting a &lt;style&gt; tag from the clipboard into a rich text e ...

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2019-17015

больше 6 лет назад

During the initialization of a new content process, a pointer offset can be manipulated leading to memory corruption and a potentially exploitable crash in the parent process. *Note: this issue only occurs on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox ESR < 68.4 and Firefox < 72.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2019-17015

больше 6 лет назад

During the initialization of a new content process, a pointer offset c ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2019-17014

больше 6 лет назад

If an image had not loaded correctly (such as when it is not actually an image), it could be dragged and dropped cross-domain, resulting in a cross-origin information leak. This vulnerability affects Firefox < 71.

CVSS3: 7.4
EPSS: Низкий
debian логотип

CVE-2019-17014

больше 6 лет назад

If an image had not loaded correctly (such as when it is not actually ...

CVSS3: 7.4
EPSS: Низкий
nvd логотип

CVE-2019-17013

больше 6 лет назад

Mozilla developers reported memory safety bugs present in Firefox 70. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 71.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2019-17018

When in Private Browsing Mode on Windows 10, the Windows keyboard may ...

CVSS3: 5.3
1%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-17017

Due to a missing case handling object types, a type confusion vulnerability could occur, resulting in a crash. We presume that with enough effort that it could be exploited to run arbitrary code. This vulnerability affects Firefox ESR < 68.4 and Firefox < 72.

CVSS3: 8.8
2%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-17017

Due to a missing case handling object types, a type confusion vulnerab ...

CVSS3: 8.8
2%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-17016

When pasting a &lt;style&gt; tag from the clipboard into a rich text editor, the CSS sanitizer incorrectly rewrites a @namespace rule. This could allow for injection into certain types of websites resulting in data exfiltration. This vulnerability affects Firefox ESR < 68.4 and Firefox < 72.

CVSS3: 6.1
2%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-17016

When pasting a &lt;style&gt; tag from the clipboard into a rich text e ...

CVSS3: 6.1
2%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-17015

During the initialization of a new content process, a pointer offset can be manipulated leading to memory corruption and a potentially exploitable crash in the parent process. *Note: this issue only occurs on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox ESR < 68.4 and Firefox < 72.

CVSS3: 8.8
2%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-17015

During the initialization of a new content process, a pointer offset c ...

CVSS3: 8.8
2%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-17014

If an image had not loaded correctly (such as when it is not actually an image), it could be dragged and dropped cross-domain, resulting in a cross-origin information leak. This vulnerability affects Firefox < 71.

CVSS3: 7.4
1%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-17014

If an image had not loaded correctly (such as when it is not actually ...

CVSS3: 7.4
1%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-17013

Mozilla developers reported memory safety bugs present in Firefox 70. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 71.

CVSS3: 8.8
1%
Низкий
больше 6 лет назад

Уязвимостей на страницу


Поделиться