Количество 23
Количество 23
GHSA-8r38-4g4q-hgvw
Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com domain when parsing the URL specified in an `embed` tag. This could have bypassed website security checks that restricted which domains users were allowed to embed. This vulnerability affects Firefox < 140 and Firefox ESR < 128.12.
CVE-2025-6429
Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com domain when parsing the URL specified in an `embed` tag. This could have bypassed website security checks that restricted which domains users were allowed to embed. This vulnerability was fixed in Firefox 140, Firefox ESR 128.12, Thunderbird 140, and Thunderbird 128.12.
CVE-2025-6429
Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com domain when parsing the URL specified in an `embed` tag. This could have bypassed website security checks that restricted which domains users were allowed to embed. This vulnerability was fixed in Firefox 140, Firefox ESR 128.12, Thunderbird 140, and Thunderbird 128.12.
CVE-2025-6429
Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com domain when parsing the URL specified in an `embed` tag. This could have bypassed website security checks that restricted which domains users were allowed to embed. This vulnerability was fixed in Firefox 140, Firefox ESR 128.12, Thunderbird 140, and Thunderbird 128.12.
CVE-2025-6429
Firefox could have incorrectly parsed a URL and rewritten it to the yo ...
BDU:2025-07728
Уязвимость браузеров Mozilla Firefox, Firefox ESR, связанная с неправильным кодированием или экранированием выходных данных, позволяющая нарушителю обойти существующие ограничения безопасности и перенаправить пользователя на другой веб-сайт
RLSA-2025:10074
Important: firefox security update
RLSA-2025:10073
Important: firefox security update
RLSA-2025:10072
Important: firefox security update
ELSA-2025-10181
ELSA-2025-10181: firefox security update (IMPORTANT)
ELSA-2025-10074
ELSA-2025-10074: firefox security update (IMPORTANT)
ELSA-2025-10073
ELSA-2025-10073: firefox security update (IMPORTANT)
ELSA-2025-10072
ELSA-2025-10072: firefox security update (IMPORTANT)
SUSE-SU-2025:02368-1
Security update for MozillaThunderbird
SUSE-SU-2025:02123-1
Security update for MozillaFirefox
SUSE-SU-2025:02122-1
Security update for MozillaFirefox
RLSA-2025:10246
Important: thunderbird security update
RLSA-2025:10196
Important: thunderbird security update
RLSA-2025:10195
Important: thunderbird security update
SUSE-SU-2025:02339-1
Security update for MozillaFirefox, MozillaFirefox-branding-SLE
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-8r38-4g4q-hgvw Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com domain when parsing the URL specified in an `embed` tag. This could have bypassed website security checks that restricted which domains users were allowed to embed. This vulnerability affects Firefox < 140 and Firefox ESR < 128.12. | CVSS3: 6.5 | 0% Низкий | около 1 года назад | |
CVE-2025-6429 Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com domain when parsing the URL specified in an `embed` tag. This could have bypassed website security checks that restricted which domains users were allowed to embed. This vulnerability was fixed in Firefox 140, Firefox ESR 128.12, Thunderbird 140, and Thunderbird 128.12. | CVSS3: 6.5 | 0% Низкий | около 1 года назад | |
CVE-2025-6429 Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com domain when parsing the URL specified in an `embed` tag. This could have bypassed website security checks that restricted which domains users were allowed to embed. This vulnerability was fixed in Firefox 140, Firefox ESR 128.12, Thunderbird 140, and Thunderbird 128.12. | CVSS3: 6.1 | 0% Низкий | около 1 года назад | |
CVE-2025-6429 Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com domain when parsing the URL specified in an `embed` tag. This could have bypassed website security checks that restricted which domains users were allowed to embed. This vulnerability was fixed in Firefox 140, Firefox ESR 128.12, Thunderbird 140, and Thunderbird 128.12. | CVSS3: 6.5 | 0% Низкий | около 1 года назад | |
CVE-2025-6429 Firefox could have incorrectly parsed a URL and rewritten it to the yo ... | CVSS3: 6.5 | 0% Низкий | около 1 года назад | |
BDU:2025-07728 Уязвимость браузеров Mozilla Firefox, Firefox ESR, связанная с неправильным кодированием или экранированием выходных данных, позволяющая нарушителю обойти существующие ограничения безопасности и перенаправить пользователя на другой веб-сайт | CVSS3: 6.5 | 0% Низкий | около 1 года назад | |
RLSA-2025:10074 Important: firefox security update | около 1 года назад | |||
RLSA-2025:10073 Important: firefox security update | 10 месяцев назад | |||
RLSA-2025:10072 Important: firefox security update | 10 месяцев назад | |||
ELSA-2025-10181 ELSA-2025-10181: firefox security update (IMPORTANT) | около 1 года назад | |||
ELSA-2025-10074 ELSA-2025-10074: firefox security update (IMPORTANT) | около 1 года назад | |||
ELSA-2025-10073 ELSA-2025-10073: firefox security update (IMPORTANT) | около 1 года назад | |||
ELSA-2025-10072 ELSA-2025-10072: firefox security update (IMPORTANT) | около 1 года назад | |||
SUSE-SU-2025:02368-1 Security update for MozillaThunderbird | около 1 года назад | |||
SUSE-SU-2025:02123-1 Security update for MozillaFirefox | около 1 года назад | |||
SUSE-SU-2025:02122-1 Security update for MozillaFirefox | около 1 года назад | |||
RLSA-2025:10246 Important: thunderbird security update | около 1 года назад | |||
RLSA-2025:10196 Important: thunderbird security update | 10 месяцев назад | |||
RLSA-2025:10195 Important: thunderbird security update | 10 месяцев назад | |||
SUSE-SU-2025:02339-1 Security update for MozillaFirefox, MozillaFirefox-branding-SLE | около 1 года назад |
Уязвимостей на страницу