Mozilla

Firefox

2939 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.29%
  • Veröffentlicht 17.08.2021 20:15:07
  • Zuletzt bearbeitet 21.11.2024 06:02:06

Firefox for Android could get stuck in fullscreen mode and not exit it even after normal interactions that should cause it to exit. *Note: This issue only affected Firefox for Android. Other operating systems are unaffected.*. This vulnerability affe...

Exploit
  • EPSS 0.67%
  • Veröffentlicht 17.08.2021 20:15:07
  • Zuletzt bearbeitet 21.11.2024 06:02:06

Instruction reordering resulted in a sequence of instructions that would cause an object to be incorrectly considered during garbage collection. This led to memory corruption and a potentially exploitable crash. This vulnerability affects Thunderbird...

Exploit
  • EPSS 0.41%
  • Veröffentlicht 17.08.2021 20:15:07
  • Zuletzt bearbeitet 21.11.2024 06:02:06

A use-after-free vulnerability in media channels could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 78.13, Thunderbird < 91, Firefox ESR < 78.13, and Firefox < 91.

Exploit
  • EPSS 0.59%
  • Veröffentlicht 17.08.2021 20:15:07
  • Zuletzt bearbeitet 21.11.2024 06:02:07

A suspected race condition when calling getaddrinfo led to memory corruption and a potentially exploitable crash. *Note: This issue only affected Linux operating systems. Other operating systems are unaffected.* This vulnerability affects Thunderbird...

  • EPSS 0.31%
  • Veröffentlicht 17.08.2021 20:15:07
  • Zuletzt bearbeitet 21.11.2024 06:02:07

After requesting multiple permissions, and closing the first permission panel, subsequent permission panels will be displayed in a different position but still record a click in the default location, making it possible to trick a user into accepting ...

Exploit
  • EPSS 0.74%
  • Veröffentlicht 05.08.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 06:02:05

A malicious webpage could have triggered a use-after-free, memory corruption, and a potentially exploitable crash. *This bug could only be triggered when accessibility was enabled.*. This vulnerability affects Thunderbird < 78.12, Firefox ESR < 78.12...

  • EPSS 0.41%
  • Veröffentlicht 05.08.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 06:02:05

If a user had granted a permission to a webpage and saved that grant, any webpage running on the same host - irrespective of scheme or port - would be granted that permission. *This bug only affects Firefox for Android. Other operating systems are un...

Exploit
  • EPSS 0.47%
  • Veröffentlicht 05.08.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 06:02:05

A use-after-free vulnerability was found via testing, and traced to an out-of-date Cairo library. Updating the library resolved the issue, and may have remediated other, unknown security vulnerabilities as well. This vulnerability affects Firefox < 9...

  • EPSS 0.34%
  • Veröffentlicht 05.08.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 06:02:05

Password autofill was enabled without user interaction on insecure websites on Firefox for Android. This was corrected to require user interaction with the page before a user's password would be entered by the browser's autofill functionality *This b...

  • EPSS 0.39%
  • Veröffentlicht 05.08.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 06:02:05

When network partitioning was enabled, e.g. as a result of Enhanced Tracking Protection settings, a TLS error page would allow the user to override an error on a domain which had specified HTTP Strict Transport Security (which implies that the error ...