CVE-2024-0744
- EPSS 0.5%
- Veröffentlicht 23.01.2024 14:15:38
- Zuletzt bearbeitet 21.11.2024 08:47:16
In some circumstances, JIT compiled code could have dereferenced a wild pointer value. This could have led to an exploitable crash. This vulnerability affects Firefox < 122.
CVE-2024-0745
- EPSS 0.76%
- Veröffentlicht 23.01.2024 14:15:38
- Zuletzt bearbeitet 21.11.2024 08:47:16
The WebAudio `OscillatorNode` object was susceptible to a stack buffer overflow. This could have led to a potentially exploitable crash. This vulnerability affects Firefox < 122.
CVE-2024-0746
- EPSS 0.45%
- Veröffentlicht 23.01.2024 14:15:38
- Zuletzt bearbeitet 20.06.2025 19:15:29
A Linux user opening the print preview dialog could have caused the browser to crash. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7.
CVE-2024-0747
- EPSS 0.45%
- Veröffentlicht 23.01.2024 14:15:38
- Zuletzt bearbeitet 22.05.2025 18:15:34
When a parent page loaded a child in an iframe with `unsafe-inline`, the parent Content Security Policy could have overridden the child Content Security Policy. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7.
CVE-2024-0748
- EPSS 0.21%
- Veröffentlicht 23.01.2024 14:15:38
- Zuletzt bearbeitet 11.06.2025 16:15:23
A compromised content process could have updated the document URI. This could have allowed an attacker to set an arbitrary URI in the address bar or history. This vulnerability affects Firefox < 122.
CVE-2024-0749
- EPSS 0.33%
- Veröffentlicht 23.01.2024 14:15:38
- Zuletzt bearbeitet 22.05.2025 18:15:35
A phishing site could have repurposed an `about:` dialog to show phishing content with an incorrect origin in the address bar. This vulnerability affects Firefox < 122 and Thunderbird < 115.7.
CVE-2024-0750
- EPSS 1.48%
- Veröffentlicht 23.01.2024 14:15:38
- Zuletzt bearbeitet 20.06.2025 19:15:29
A bug in popup notifications delay calculation could have made it possible for an attacker to trick a user into granting permissions. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7.
CVE-2024-0751
- EPSS 0.44%
- Veröffentlicht 23.01.2024 14:15:38
- Zuletzt bearbeitet 20.06.2025 19:15:29
A malicious devtools extension could have been used to escalate privileges. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7.
CVE-2024-0752
- EPSS 0.12%
- Veröffentlicht 23.01.2024 14:15:38
- Zuletzt bearbeitet 20.06.2025 19:15:30
A use-after-free crash could have occurred on macOS if a Firefox update were being applied on a very busy system. This could have resulted in an exploitable crash. This vulnerability affects Firefox < 122.
CVE-2024-0753
- EPSS 0.36%
- Veröffentlicht 23.01.2024 14:15:38
- Zuletzt bearbeitet 07.06.2025 21:15:21
In specific HSTS configurations an attacker could have bypassed HSTS on a subdomain. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7.