Количество 42
Количество 42
RLSA-2025:10074
Important: firefox security update
RLSA-2025:10073
Important: firefox security update
RLSA-2025:10072
Important: firefox security update
ELSA-2025-10181
ELSA-2025-10181: firefox security update (IMPORTANT)
ELSA-2025-10074
ELSA-2025-10074: firefox security update (IMPORTANT)
ELSA-2025-10073
ELSA-2025-10073: firefox security update (IMPORTANT)
ELSA-2025-10072
ELSA-2025-10072: firefox security update (IMPORTANT)
SUSE-SU-2025:02368-1
Security update for MozillaThunderbird
SUSE-SU-2025:02123-1
Security update for MozillaFirefox
SUSE-SU-2025:02122-1
Security update for MozillaFirefox
RLSA-2025:10246
Important: thunderbird security update
RLSA-2025:10196
Important: thunderbird security update
RLSA-2025:10195
Important: thunderbird security update
SUSE-SU-2025:02339-1
Security update for MozillaFirefox, MozillaFirefox-branding-SLE
SUSE-SU-2025:02546-1
Security update for MozillaThunderbird
openSUSE-SU-2025:20135-1
Security update for mozjs128
SUSE-SU-2025:02529-1
Security update for MozillaFirefox, MozillaFirefox-branding-SLE
CVE-2025-6429
Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com domain when parsing the URL specified in an `embed` tag. This could have bypassed website security checks that restricted which domains users were allowed to embed. This vulnerability was fixed in Firefox 140, Firefox ESR 128.12, Thunderbird 140, and Thunderbird 128.12.
CVE-2025-6429
Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com domain when parsing the URL specified in an `embed` tag. This could have bypassed website security checks that restricted which domains users were allowed to embed. This vulnerability was fixed in Firefox 140, Firefox ESR 128.12, Thunderbird 140, and Thunderbird 128.12.
CVE-2025-6429
Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com domain when parsing the URL specified in an `embed` tag. This could have bypassed website security checks that restricted which domains users were allowed to embed. This vulnerability was fixed in Firefox 140, Firefox ESR 128.12, Thunderbird 140, and Thunderbird 128.12.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2025:10074 Important: firefox security update | около 1 года назад | |||
RLSA-2025:10073 Important: firefox security update | 10 месяцев назад | |||
RLSA-2025:10072 Important: firefox security update | 10 месяцев назад | |||
ELSA-2025-10181 ELSA-2025-10181: firefox security update (IMPORTANT) | около 1 года назад | |||
ELSA-2025-10074 ELSA-2025-10074: firefox security update (IMPORTANT) | около 1 года назад | |||
ELSA-2025-10073 ELSA-2025-10073: firefox security update (IMPORTANT) | около 1 года назад | |||
ELSA-2025-10072 ELSA-2025-10072: firefox security update (IMPORTANT) | около 1 года назад | |||
SUSE-SU-2025:02368-1 Security update for MozillaThunderbird | около 1 года назад | |||
SUSE-SU-2025:02123-1 Security update for MozillaFirefox | около 1 года назад | |||
SUSE-SU-2025:02122-1 Security update for MozillaFirefox | около 1 года назад | |||
RLSA-2025:10246 Important: thunderbird security update | около 1 года назад | |||
RLSA-2025:10196 Important: thunderbird security update | 10 месяцев назад | |||
RLSA-2025:10195 Important: thunderbird security update | 10 месяцев назад | |||
SUSE-SU-2025:02339-1 Security update for MozillaFirefox, MozillaFirefox-branding-SLE | около 1 года назад | |||
SUSE-SU-2025:02546-1 Security update for MozillaThunderbird | около 1 года назад | |||
openSUSE-SU-2025:20135-1 Security update for mozjs128 | 8 месяцев назад | |||
SUSE-SU-2025:02529-1 Security update for MozillaFirefox, MozillaFirefox-branding-SLE | около 1 года назад | |||
CVE-2025-6429 Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com domain when parsing the URL specified in an `embed` tag. This could have bypassed website security checks that restricted which domains users were allowed to embed. This vulnerability was fixed in Firefox 140, Firefox ESR 128.12, Thunderbird 140, and Thunderbird 128.12. | CVSS3: 6.5 | 0% Низкий | около 1 года назад | |
CVE-2025-6429 Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com domain when parsing the URL specified in an `embed` tag. This could have bypassed website security checks that restricted which domains users were allowed to embed. This vulnerability was fixed in Firefox 140, Firefox ESR 128.12, Thunderbird 140, and Thunderbird 128.12. | CVSS3: 6.1 | 0% Низкий | около 1 года назад | |
CVE-2025-6429 Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com domain when parsing the URL specified in an `embed` tag. This could have bypassed website security checks that restricted which domains users were allowed to embed. This vulnerability was fixed in Firefox 140, Firefox ESR 128.12, Thunderbird 140, and Thunderbird 128.12. | CVSS3: 6.5 | 0% Низкий | около 1 года назад |
Уязвимостей на страницу