Количество 42
Количество 42
RLSA-2025:10074
Important: firefox security update
RLSA-2025:10073
Important: firefox security update
RLSA-2025:10072
Important: firefox security update
ELSA-2025-10181
ELSA-2025-10181: firefox security update (IMPORTANT)
ELSA-2025-10074
ELSA-2025-10074: firefox security update (IMPORTANT)
ELSA-2025-10073
ELSA-2025-10073: firefox security update (IMPORTANT)
ELSA-2025-10072
ELSA-2025-10072: firefox security update (IMPORTANT)
SUSE-SU-2025:02368-1
Security update for MozillaThunderbird
SUSE-SU-2025:02123-1
Security update for MozillaFirefox
SUSE-SU-2025:02122-1
Security update for MozillaFirefox
RLSA-2025:10246
Important: thunderbird security update
RLSA-2025:10196
Important: thunderbird security update
RLSA-2025:10195
Important: thunderbird security update
SUSE-SU-2025:02339-1
Security update for MozillaFirefox, MozillaFirefox-branding-SLE
SUSE-SU-2025:02546-1
Security update for MozillaThunderbird
openSUSE-SU-2025:20135-1
Security update for mozjs128
SUSE-SU-2025:02529-1
Security update for MozillaFirefox, MozillaFirefox-branding-SLE
CVE-2025-6430
When a file download is specified via the `Content-Disposition` header, that directive would be ignored if the file was included via a `<embed>` or `<object>` tag, potentially making a website vulnerable to a cross-site scripting attack. This vulnerability affects Firefox < 140, Firefox ESR < 128.12, Thunderbird < 140, and Thunderbird < 128.12.
CVE-2025-6430
When a file download is specified via the `Content-Disposition` header, that directive would be ignored if the file was included via a `<embed>` or `<object>` tag, potentially making a website vulnerable to a cross-site scripting attack. This vulnerability affects Firefox < 140, Firefox ESR < 128.12, Thunderbird < 140, and Thunderbird < 128.12.
CVE-2025-6430
When a file download is specified via the `Content-Disposition` header, that directive would be ignored if the file was included via a `<embed>` or `<object>` tag, potentially making a website vulnerable to a cross-site scripting attack. This vulnerability affects Firefox < 140, Firefox ESR < 128.12, Thunderbird < 140, and Thunderbird < 128.12.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2025:10074 Important: firefox security update | 6 месяцев назад | |||
RLSA-2025:10073 Important: firefox security update | 4 месяца назад | |||
RLSA-2025:10072 Important: firefox security update | 4 месяца назад | |||
ELSA-2025-10181 ELSA-2025-10181: firefox security update (IMPORTANT) | 6 месяцев назад | |||
ELSA-2025-10074 ELSA-2025-10074: firefox security update (IMPORTANT) | 7 месяцев назад | |||
ELSA-2025-10073 ELSA-2025-10073: firefox security update (IMPORTANT) | 7 месяцев назад | |||
ELSA-2025-10072 ELSA-2025-10072: firefox security update (IMPORTANT) | 7 месяцев назад | |||
SUSE-SU-2025:02368-1 Security update for MozillaThunderbird | 6 месяцев назад | |||
SUSE-SU-2025:02123-1 Security update for MozillaFirefox | 7 месяцев назад | |||
SUSE-SU-2025:02122-1 Security update for MozillaFirefox | 7 месяцев назад | |||
RLSA-2025:10246 Important: thunderbird security update | 6 месяцев назад | |||
RLSA-2025:10196 Important: thunderbird security update | 4 месяца назад | |||
RLSA-2025:10195 Important: thunderbird security update | 4 месяца назад | |||
SUSE-SU-2025:02339-1 Security update for MozillaFirefox, MozillaFirefox-branding-SLE | 6 месяцев назад | |||
SUSE-SU-2025:02546-1 Security update for MozillaThunderbird | 6 месяцев назад | |||
openSUSE-SU-2025:20135-1 Security update for mozjs128 | около 2 месяцев назад | |||
SUSE-SU-2025:02529-1 Security update for MozillaFirefox, MozillaFirefox-branding-SLE | 6 месяцев назад | |||
CVE-2025-6430 When a file download is specified via the `Content-Disposition` header, that directive would be ignored if the file was included via a `<embed>` or `<object>` tag, potentially making a website vulnerable to a cross-site scripting attack. This vulnerability affects Firefox < 140, Firefox ESR < 128.12, Thunderbird < 140, and Thunderbird < 128.12. | CVSS3: 6.1 | 0% Низкий | 7 месяцев назад | |
CVE-2025-6430 When a file download is specified via the `Content-Disposition` header, that directive would be ignored if the file was included via a `<embed>` or `<object>` tag, potentially making a website vulnerable to a cross-site scripting attack. This vulnerability affects Firefox < 140, Firefox ESR < 128.12, Thunderbird < 140, and Thunderbird < 128.12. | CVSS3: 6.1 | 0% Низкий | 7 месяцев назад | |
CVE-2025-6430 When a file download is specified via the `Content-Disposition` header, that directive would be ignored if the file was included via a `<embed>` or `<object>` tag, potentially making a website vulnerable to a cross-site scripting attack. This vulnerability affects Firefox < 140, Firefox ESR < 128.12, Thunderbird < 140, and Thunderbird < 128.12. | CVSS3: 6.1 | 0% Низкий | 7 месяцев назад |
Уязвимостей на страницу