Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 500

redhat логотип

CVE-2019-11733

около 7 лет назад

When a master password is set, it is required to be entered again before stored passwords can be accessed in the 'Saved Logins' dialog. It was found that locally stored passwords can be copied to the clipboard thorough the 'copy password' context menu item without re-entering the master password if the master password had been previously entered in the same session, allowing for potential theft of stored passwords. This vulnerability affects Firefox < 68.0.2 and Firefox ESR < 68.0.2.

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2019-02851

около 7 лет назад

Уязвимость браузеров Firefox, Firefox ESR, почтового клиента Thunderbird, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2019-9821

около 7 лет назад

A use-after-free vulnerability can occur in AssertWorkerThread due to a race condition with shared workers. This results in a potentially exploitable crash. This vulnerability affects Firefox < 67.

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2019-9821

около 7 лет назад

A use-after-free vulnerability can occur in AssertWorkerThread due to ...

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2019-9820

около 7 лет назад

A use-after-free vulnerability can occur in the chrome event handler when it is freed while still in use. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.7, Firefox < 67, and Firefox ESR < 60.7.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2019-9820

около 7 лет назад

A use-after-free vulnerability can occur in the chrome event handler w ...

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2019-9819

около 7 лет назад

A vulnerability where a JavaScript compartment mismatch can occur while working with the fetch API, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.7, Firefox < 67, and Firefox ESR < 60.7.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2019-9819

около 7 лет назад

A vulnerability where a JavaScript compartment mismatch can occur whil ...

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2019-9818

около 7 лет назад

A race condition is present in the crash generation server used to generate data for the crash reporter. This issue can lead to a use-after-free in the main process, resulting in a potentially exploitable crash and a sandbox escape. *Note: this vulnerability only affects Windows. Other operating systems are unaffected.*. This vulnerability affects Thunderbird < 60.7, Firefox < 67, and Firefox ESR < 60.7.

CVSS3: 8.3
EPSS: Низкий
debian логотип

CVE-2019-9818

около 7 лет назад

A race condition is present in the crash generation server used to gen ...

CVSS3: 8.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
redhat логотип
CVE-2019-11733

When a master password is set, it is required to be entered again before stored passwords can be accessed in the 'Saved Logins' dialog. It was found that locally stored passwords can be copied to the clipboard thorough the 'copy password' context menu item without re-entering the master password if the master password had been previously entered in the same session, allowing for potential theft of stored passwords. This vulnerability affects Firefox < 68.0.2 and Firefox ESR < 68.0.2.

CVSS3: 9.8
1%
Низкий
около 7 лет назад
fstec логотип
BDU:2019-02851

Уязвимость браузеров Firefox, Firefox ESR, почтового клиента Thunderbird, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
2%
Низкий
около 7 лет назад
nvd логотип
CVE-2019-9821

A use-after-free vulnerability can occur in AssertWorkerThread due to a race condition with shared workers. This results in a potentially exploitable crash. This vulnerability affects Firefox < 67.

CVSS3: 8.1
1%
Низкий
около 7 лет назад
debian логотип
CVE-2019-9821

A use-after-free vulnerability can occur in AssertWorkerThread due to ...

CVSS3: 8.1
1%
Низкий
около 7 лет назад
nvd логотип
CVE-2019-9820

A use-after-free vulnerability can occur in the chrome event handler when it is freed while still in use. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.7, Firefox < 67, and Firefox ESR < 60.7.

CVSS3: 9.8
2%
Низкий
около 7 лет назад
debian логотип
CVE-2019-9820

A use-after-free vulnerability can occur in the chrome event handler w ...

CVSS3: 9.8
2%
Низкий
около 7 лет назад
nvd логотип
CVE-2019-9819

A vulnerability where a JavaScript compartment mismatch can occur while working with the fetch API, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.7, Firefox < 67, and Firefox ESR < 60.7.

CVSS3: 9.8
2%
Низкий
около 7 лет назад
debian логотип
CVE-2019-9819

A vulnerability where a JavaScript compartment mismatch can occur whil ...

CVSS3: 9.8
2%
Низкий
около 7 лет назад
nvd логотип
CVE-2019-9818

A race condition is present in the crash generation server used to generate data for the crash reporter. This issue can lead to a use-after-free in the main process, resulting in a potentially exploitable crash and a sandbox escape. *Note: this vulnerability only affects Windows. Other operating systems are unaffected.*. This vulnerability affects Thunderbird < 60.7, Firefox < 67, and Firefox ESR < 60.7.

CVSS3: 8.3
1%
Низкий
около 7 лет назад
debian логотип
CVE-2019-9818

A race condition is present in the crash generation server used to gen ...

CVSS3: 8.3
1%
Низкий
около 7 лет назад

Уязвимостей на страницу


Поделиться