Mozilla

Firefox

2867 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.75%
  • Veröffentlicht 11.06.2018 21:29:02
  • Zuletzt bearbeitet 21.11.2024 03:27:29

Use-after-free vulnerability in Web Animations when interacting with cycle collection found through fuzzing. This vulnerability affects Firefox < 51.

  • EPSS 0.27%
  • Veröffentlicht 11.06.2018 21:29:01
  • Zuletzt bearbeitet 21.11.2024 03:00:31

Add-on updates failed to verify that the add-on ID inside the signed package matched the ID of the add-on being updated. An attacker who could perform a man-in-the-middle attack on the user's connection to the update server and defeat the certificate...

Exploit
  • EPSS 0.77%
  • Veröffentlicht 11.06.2018 21:29:01
  • Zuletzt bearbeitet 21.11.2024 03:00:31

The location bar in Firefox for Android can be spoofed by forcing a user into fullscreen mode, blocking its exiting, and creating of a fake location bar without any user notification. Note: This issue only affects Firefox for Android. Other versions ...

  • EPSS 20.61%
  • Veröffentlicht 11.06.2018 21:29:01
  • Zuletzt bearbeitet 21.11.2024 03:00:31

A buffer overflow resulting in a potentially exploitable crash due to memory allocation issues when handling large amounts of incoming data. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.

  • EPSS 1.36%
  • Veröffentlicht 11.06.2018 21:29:01
  • Zuletzt bearbeitet 21.11.2024 03:00:32

Two use-after-free errors during DOM operations resulting in potentially exploitable crashes. This vulnerability affects Firefox < 50.

  • EPSS 1.72%
  • Veröffentlicht 11.06.2018 21:29:01
  • Zuletzt bearbeitet 21.11.2024 03:00:32

A use-after-free during web animations when working with timelines resulting in a potentially exploitable crash. This vulnerability affects Firefox < 50.

  • EPSS 0.73%
  • Veröffentlicht 11.06.2018 21:29:01
  • Zuletzt bearbeitet 21.11.2024 03:00:32

A maliciously crafted page loaded to the sidebar through a bookmark can reference a privileged chrome window and engage in limited JavaScript operations violating cross-origin protections. This vulnerability affects Firefox < 50.

  • EPSS 0.26%
  • Veröffentlicht 11.06.2018 21:29:01
  • Zuletzt bearbeitet 21.11.2024 03:00:32

Content Security Policy combined with HTTP to HTTPS redirection can be used by malicious server to verify whether a known site is within a user's browser history. This vulnerability affects Firefox < 50.

  • EPSS 0.81%
  • Veröffentlicht 11.06.2018 21:29:01
  • Zuletzt bearbeitet 21.11.2024 03:00:32

When a new Firefox profile is created on 64-bit Windows installations, the sandbox for 64-bit NPAPI plugins is not enabled by default. Note: This issue only affects 64-bit Windows. 32-bit Windows and other operating systems are unaffected. This vulne...

  • EPSS 0.81%
  • Veröffentlicht 11.06.2018 21:29:01
  • Zuletzt bearbeitet 21.11.2024 03:00:32

WebExtensions can bypass security checks to load privileged URLs and potentially escape the WebExtension sandbox. This vulnerability affects Firefox < 50.