Debian Firefox vulnerabilities

1,810 known vulnerabilities affecting debian/firefox.

Total CVEs
1,810
CISA KEV
11
actively exploited
Public exploits
35
Exploited in wild
15
Severity breakdown
CRITICAL333HIGH633MEDIUM542LOW302

Vulnerabilities

Page 13 of 91
CVE-2025-5263MEDIUMCVSS 4.3fixed in firefox 139.0-1 (sid)2025
CVE-2025-5263 [MEDIUM] CVE-2025-5263: firefox - Error handling for script execution was incorrectly isolated from web content, w... Error handling for script execution was incorrectly isolated from web content, which could have allowed cross-origin leak attacks. This vulnerability affects Firefox < 139, Firefox ESR < 115.24, Firefox ESR < 128.11, Thunderbird < 139, and Thunderbird < 128.11. Scope: local sid: resolved (fixed in 139.0-1)
debian
CVE-2025-6429MEDIUMCVSS 6.5fixed in firefox 140.0-1 (sid)2025
CVE-2025-6429 [MEDIUM] CVE-2025-6429: firefox - Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com ... Firefox could have incorrectly parsed a URL and rewritten it to the youtube.com domain when parsing the URL specified in an `embed` tag. This could have bypassed website security checks that restricted which domains users were allowed to embed. This vulnerability affects Firefox < 140, Firefox ESR < 128.12, Thunderbird < 140, and Thunderbird < 128.12. Scope: local s
debian
CVE-2025-5271MEDIUMCVSS 6.5fixed in firefox 139.0-1 (sid)2025
CVE-2025-5271 [MEDIUM] CVE-2025-5271: firefox - Previewing a response in Devtools ignored CSP headers, which could have allowed ... Previewing a response in Devtools ignored CSP headers, which could have allowed content injection attacks. This vulnerability affects Firefox < 139 and Thunderbird < 139. Scope: local sid: resolved (fixed in 139.0-1)
debian
CVE-2025-11718MEDIUMCVSS 6.5fixed in firefox 144.0-1 (sid)2025
CVE-2025-11718 [MEDIUM] CVE-2025-11718: firefox - When the address bar was hidden due to scrolling on Android, a malicious page co... When the address bar was hidden due to scrolling on Android, a malicious page could create a fake address bar to fool the user in response to a visibilitychange event This vulnerability affects Firefox < 144. Scope: local sid: resolved (fixed in 144.0-1)
debian
CVE-2025-3028MEDIUMCVSS 6.5fixed in firefox 137.0-1 (sid)2025
CVE-2025-3028 [MEDIUM] CVE-2025-3028: firefox - JavaScript code running while transforming a document with the XSLTProcessor cou... JavaScript code running while transforming a document with the XSLTProcessor could lead to a use-after-free. This vulnerability affects Firefox < 137, Firefox ESR < 115.22, Firefox ESR < 128.9, Thunderbird < 137, and Thunderbird < 128.9. Scope: local sid: resolved (fixed in 137.0-1)
debian
CVE-2025-6434MEDIUMCVSS 4.3fixed in firefox 140.0-1 (sid)2025
CVE-2025-6434 [MEDIUM] CVE-2025-6434: firefox - The exception page for the HTTPS-Only feature, displayed when a website is opene... The exception page for the HTTPS-Only feature, displayed when a website is opened via HTTP, lacked an anti-clickjacking delay, potentially allowing an attacker to trick a user into granting an exception and loading a webpage over HTTP. This vulnerability affects Firefox < 140 and Thunderbird < 140. Scope: local sid: resolved (fixed in 140.0-1)
debian
CVE-2025-14331MEDIUMCVSS 6.5fixed in firefox 146.0-1 (sid)2025
CVE-2025-14331 [MEDIUM] CVE-2025-14331: firefox - Same-origin policy bypass in the Request Handling component. This vulnerability ... Same-origin policy bypass in the Request Handling component. This vulnerability affects Firefox < 146, Firefox ESR < 115.31, Firefox ESR < 140.6, Thunderbird < 146, and Thunderbird < 140.6. Scope: local sid: resolved (fixed in 146.0-1)
debian
CVE-2025-3608MEDIUMCVSS 6.5fixed in firefox 137.0.2-1 (sid)2025
CVE-2025-3608 [MEDIUM] CVE-2025-3608: firefox - A race condition existed in nsHttpTransaction that could have been exploited to ... A race condition existed in nsHttpTransaction that could have been exploited to cause memory corruption, potentially leading to an exploitable condition. This vulnerability affects Firefox < 137.0.2. Scope: local sid: resolved (fixed in 137.0.2-1)
debian
CVE-2025-4087MEDIUMCVSS 4.8fixed in firefox 138.0-1 (sid)2025
CVE-2025-4087 [MEDIUM] CVE-2025-4087: firefox - A vulnerability was identified in Thunderbird where XPath parsing could trigger ... A vulnerability was identified in Thunderbird where XPath parsing could trigger undefined behavior due to missing null checks during attribute access. This could lead to out-of-bounds read access and potentially, memory corruption. This vulnerability affects Firefox < 138, Firefox ESR < 128.10, Thunderbird < 138, and Thunderbird < 128.10. Scope: local sid: resolved
debian
CVE-2025-5266MEDIUMCVSS 4.3fixed in firefox 139.0-1 (sid)2025
CVE-2025-5266 [MEDIUM] CVE-2025-5266: firefox - Script elements loading cross-origin resources generated load and error events w... Script elements loading cross-origin resources generated load and error events which leaked information enabling XS-Leaks attacks. This vulnerability affects Firefox < 139, Firefox ESR < 128.11, Thunderbird < 139, and Thunderbird < 128.11. Scope: local sid: resolved (fixed in 139.0-1)
debian
CVE-2025-11711MEDIUMCVSS 6.5fixed in firefox 144.0-1 (sid)2025
CVE-2025-11711 [MEDIUM] CVE-2025-11711: firefox - There was a way to change the value of JavaScript Object properties that were su... There was a way to change the value of JavaScript Object properties that were supposed to be non-writeable. This vulnerability affects Firefox < 144, Firefox ESR < 115.29, Firefox ESR < 140.4, Thunderbird < 144, and Thunderbird < 140.4. Scope: local sid: resolved (fixed in 144.0-1)
debian
CVE-2025-6425MEDIUMCVSS 4.3fixed in firefox 140.0-1 (sid)2025
CVE-2025-6425 [MEDIUM] CVE-2025-6425: firefox - An attacker who enumerated resources from the WebCompat extension could have obt... An attacker who enumerated resources from the WebCompat extension could have obtained a persistent UUID that identified the browser, and persisted between containers and normal/private browsing mode, but not profiles. This vulnerability affects Firefox < 140, Firefox ESR < 115.25, Firefox ESR < 128.12, Thunderbird < 140, and Thunderbird < 128.12. Scope: local sid: r
debian
CVE-2025-10531MEDIUMCVSS 5.4fixed in firefox 143.0-1 (sid)2025
CVE-2025-10531 [MEDIUM] CVE-2025-10531: firefox - Mitigation bypass in the Web Compatibility: Tooling component. This vulnerabilit... Mitigation bypass in the Web Compatibility: Tooling component. This vulnerability affects Firefox < 143 and Thunderbird < 143. Scope: local sid: resolved (fixed in 143.0-1)
debian
CVE-2025-0243MEDIUMCVSS 5.1fixed in firefox 134.0-1 (sid)2025
CVE-2025-0243 [MEDIUM] CVE-2025-0243: firefox - Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 128.5, a... Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 128.5, and Thunderbird 128.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 134, Firefox ESR < 128.6, Thunderbird < 134, and Thunderbird < 128.6. S
debian
CVE-2025-5264MEDIUMCVSS 4.8fixed in firefox 139.0-1 (sid)2025
CVE-2025-5264 [MEDIUM] CVE-2025-5264: firefox - Due to insufficient escaping of the newline character in the “Copy as cURL” feat... Due to insufficient escaping of the newline character in the “Copy as cURL” feature, an attacker could trick a user into using this command, potentially leading to local code execution on the user's system. This vulnerability affects Firefox < 139, Firefox ESR < 115.24, Firefox ESR < 128.11, Thunderbird < 139, and Thunderbird < 128.11. Scope: local sid: resolved (fi
debian
CVE-2025-9181MEDIUMCVSS 6.5fixed in firefox 142.0-1 (sid)2025
CVE-2025-9181 [MEDIUM] CVE-2025-9181: firefox - Uninitialized memory in the JavaScript Engine component. This vulnerability affe... Uninitialized memory in the JavaScript Engine component. This vulnerability affects Firefox < 142, Firefox ESR < 128.14, Firefox ESR < 140.2, Thunderbird < 142, Thunderbird < 128.14, and Thunderbird < 140.2. Scope: local sid: resolved (fixed in 142.0-1)
debian
CVE-2025-5283MEDIUMCVSS 5.4fixed in chromium 137.0.7151.55-3~deb12u1 (bookworm)2025
CVE-2025-5283 [MEDIUM] CVE-2025-5283: chromium - Use after free in libvpx in Google Chrome prior to 137.0.7151.55 allowed a remot... Use after free in libvpx in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium) Scope: local bookworm: resolved (fixed in 137.0.7151.55-3~deb12u1) bullseye: open forky: resolved (fixed in 137.0.7151.55-1) sid: resolved (fixed in 137.0.7151.55-1) trixie: r
debian
CVE-2025-6430MEDIUMCVSS 6.1fixed in firefox 140.0-1 (sid)2025
CVE-2025-6430 [MEDIUM] CVE-2025-6430: firefox - When a file download is specified via the `Content-Disposition` header, that dir... When a file download is specified via the `Content-Disposition` header, that directive would be ignored if the file was included via a ` ` or ` ` tag, potentially making a website vulnerable to a cross-site scripting attack. This vulnerability affects Firefox < 140, Firefox ESR < 128.12, Thunderbird < 140, and Thunderbird < 128.12. Scope: local sid: resolved (fixed
debian
CVE-2025-8027MEDIUMCVSS 6.5fixed in firefox 141.0-1 (sid)2025
CVE-2025-8027 [MEDIUM] CVE-2025-8027: firefox - On 64-bit platforms IonMonkey-JIT only wrote 32 bits of the 64-bit return value ... On 64-bit platforms IonMonkey-JIT only wrote 32 bits of the 64-bit return value space on the stack. Baseline-JIT, however, read the entire 64 bits. This vulnerability affects Firefox < 141, Firefox ESR < 115.26, Firefox ESR < 128.13, Firefox ESR < 140.1, Thunderbird < 141, Thunderbird < 128.13, and Thunderbird < 140.1. Scope: local sid: resolved (fixed in 141.0-1)
debian
CVE-2025-1935MEDIUMCVSS 4.3fixed in firefox 136.0-1 (sid)2025
CVE-2025-1935 [MEDIUM] CVE-2025-1935: firefox - A web page could trick a user into setting that site as the default handler for ... A web page could trick a user into setting that site as the default handler for a custom URL protocol. This vulnerability affects Firefox < 136, Firefox ESR < 128.8, Thunderbird < 136, and Thunderbird < 128.8. Scope: local sid: resolved (fixed in 136.0-1)
debian