Mozilla

Firefox

2920 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.29%
  • Veröffentlicht 19.06.2023 11:15:09
  • Zuletzt bearbeitet 11.12.2024 17:15:11

When recording the screen while in Private Browsing on Firefox for Android the address bar and keyboard were not hidden, potentially leaking sensitive information. *This bug only affects Firefox for Android. Other operating systems are unaffected.*...

  • EPSS 1.07%
  • Veröffentlicht 19.06.2023 10:15:09
  • Zuletzt bearbeitet 11.12.2024 16:15:08

An attacker could have caused an out of bounds memory access using WebGL APIs, leading to memory corruption and a potentially exploitable crash. *This bug only affects Firefox and Thunderbird for macOS. Other operating systems are unaffected.* This ...

  • EPSS 0.07%
  • Veröffentlicht 19.06.2023 10:15:09
  • Zuletzt bearbeitet 11.12.2024 16:15:08

A local attacker can trick the Mozilla Maintenance Service into applying an unsigned update file by pointing the service at an update file on a malicious SMB server. The update file can be replaced after the signature check, before the use, because t...

  • EPSS 0.21%
  • Veröffentlicht 19.06.2023 10:15:09
  • Zuletzt bearbeitet 21.11.2024 08:02:54

Service workers could reveal script base URL due to dynamic `import()`. This vulnerability affects Firefox < 113.

  • EPSS 0.15%
  • Veröffentlicht 19.06.2023 10:15:09
  • Zuletzt bearbeitet 21.11.2024 08:02:54

A maliciously crafted favicon could have led to an out of memory crash. This vulnerability affects Firefox < 113.

  • EPSS 0.18%
  • Veröffentlicht 19.06.2023 10:15:09
  • Zuletzt bearbeitet 21.11.2024 08:02:54

Documents were incorrectly assuming an ordering of principal objects when ensuring we were loading an appropriately privileged principal. In certain circumstances it might have been possible to cause a document to be loaded with a higher privileged p...

  • EPSS 0.23%
  • Veröffentlicht 19.06.2023 10:15:09
  • Zuletzt bearbeitet 21.11.2024 08:02:54

Protocol handlers `ms-cxh` and `ms-cxh-full` could have been leveraged to trigger a denial of service. *Note: This attack only affects Windows. Other operating systems are not affected.* This vulnerability affects Firefox < 113, Firefox ESR < 102.11,...

  • EPSS 0.28%
  • Veröffentlicht 19.06.2023 10:15:09
  • Zuletzt bearbeitet 27.05.2025 17:15:25

Mozilla developers and community members Ronald Crane, Andrew McCreight, Randell Jesup and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 112. Some of these bugs showed evidence of memory corruption and we presume that with e...

  • EPSS 0.16%
  • Veröffentlicht 02.06.2023 17:15:13
  • Zuletzt bearbeitet 08.01.2025 22:15:27

Memory safety bugs present in Firefox 111. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox for Android < ...

  • EPSS 0.14%
  • Veröffentlicht 02.06.2023 17:15:13
  • Zuletzt bearbeitet 21.11.2024 08:02:53

In multiple cases browser prompts could have been obscured by popups controlled by content. These could have led to potential user confusion and spoofing attacks. This vulnerability affects Firefox < 113, Firefox ESR < 102.11, and Thunderbird < 102.1...