cbcvebase.

Mozilla Firefox vulnerabilities

3,233 known vulnerabilities affecting mozilla/firefox.

Total CVEs
3,233
CISA KEV
15
actively exploited
Public exploits
126
Exploited in wild
34
Severity breakdown
CRITICAL914HIGH970MEDIUM1277LOW69UNKNOWN3

Vulnerabilities

Page 100 of 162
CVE-2013-1731P4MEDIUMCVSS 6.8≤ 23.0.1v19.0+7 more2013-09-18
CVE-2013-1731 [MEDIUM] CWE-20 CVE-2013-1731: Untrusted search path vulnerability in the GL tracing functionality in Mozilla Firefox before 24.0 o Untrusted search path vulnerability in the GL tracing functionality in Mozilla Firefox before 24.0 on Android allows attackers to execute arbitrary code via a Trojan horse .so file in a world-writable directory.
nvd
CVE-2018-12396P4MEDIUMCVSS 6.5fixed in 63.0≥ unspecified, < 632019-02-28
CVE-2018-12396 [MEDIUM] CWE-732 CVE-2018-12396: A vulnerability where a WebExtension can run content scripts in disallowed contexts following naviga A vulnerability where a WebExtension can run content scripts in disallowed contexts following navigation or other events. This allows for potential privilege escalation by the WebExtension on sites where content scripts should not be run. This vulnerability affects Firefox ESR < 60.3 and Firefox < 63.
nvd
CVE-2026-16404P3UNKNOWNfixed in Firefox 153
CVE-2026-16404 Mozilla Foundation Security Advisory 2026-68: CVE-2026-16404 Mozilla Foundation Security Advisory 2026-68 CVE: CVE-2026-16404 Product: Firefox Impact: high Fixed in: Firefox 153
mozilla
CVE-2022-42930P4HIGHCVSS 7.1fixed in 106.0≥ unspecified, < 1062022-12-22
CVE-2022-42930 [HIGH] CWE-362 CVE-2022-42930: If two Workers were simultaneously initializing their CacheStorage, a data race could have occurred If two Workers were simultaneously initializing their CacheStorage, a data race could have occurred in the `ThirdPartyUtil` component. This vulnerability affects Firefox < 106.
nvdosv
CVE-2017-7844P4MEDIUMCVSS 6.5fixed in 57.0.1≥ unspecified, < 57.0.12018-06-11
CVE-2017-7844 [MEDIUM] CWE-200 CVE-2017-7844: A combination of an external SVG image referenced on a page and the coloring of anchor links stored A combination of an external SVG image referenced on a page and the coloring of anchor links stored within this image can be used to determine which pages a user has in their history. This can allow a malicious website to query user history. Note: This issue only affects Firefox 57. Earlier releases are not affected. This vulnerability affects Firefox
nvdosv
CVE-2025-10527P4HIGHCVSS 7.1fixed in 140.3.0≤ 143.02025-09-16
CVE-2025-10527 [HIGH] CWE-416 CVE-2025-10527: Sandbox escape due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fix Sandbox escape due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
nvd
CVE-2025-1940P4HIGHCVSS 7.1fixed in 136.02025-03-04
CVE-2025-1940 [HIGH] CWE-1021 CVE-2025-1940: A select option could partially obscure the confirmation prompt shown before launching external apps A select option could partially obscure the confirmation prompt shown before launching external apps. This could be used to trick a user in to launching an external app unexpectedly. *This issue only affects Android versions of Firefox.*. This vulnerability was fixed in Firefox 136.
nvd
CVE-2024-5700P4HIGHCVSS 7.0fixed in 115.12fixed in 127.0+1 more2024-06-11
CVE-2024-5700 [HIGH] CWE-786 CVE-2024-5700: Memory safety bugs present in Firefox 126, Firefox ESR 115.11, and Thunderbird 115.11. Some of these Memory safety bugs present in Firefox 126, Firefox ESR 115.11, and Thunderbird 115.11. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 127, Firefox ESR < 115.12, and Thunderbird < 115.12.
nvd
CVE-2018-5152P4MEDIUMCVSS 6.5fixed in 60.0≥ unspecified, < 602018-06-11
CVE-2018-5152 [MEDIUM] CWE-327 CVE-2018-5152: WebExtensions with the appropriate permissions can attach content scripts to Mozilla sites such as a WebExtensions with the appropriate permissions can attach content scripts to Mozilla sites such as accounts.firefox.com and listen to network traffic to the site through the "webRequest" API. For example, this allows for the interception of username and an encrypted password during login to Firefox Accounts. This issue does not expose synchronization
nvdosv
CVE-2006-0294P4HIGHCVSS 7.5v0.8v0.9+14 more2006-02-02
CVE-2006-0294 [HIGH] CVE-2006-0294: Mozilla Firefox before 1.5.0.1, Thunderbird 1.5 if running Javascript in mail, and SeaMonkey before Mozilla Firefox before 1.5.0.1, Thunderbird 1.5 if running Javascript in mail, and SeaMonkey before 1.0 allow remote attackers to execute arbitrary code by changing an element's style from position:relative to position:static, which causes Gecko to operate on freed memory.
nvd
CVE-2019-11725P4MEDIUMCVSS 6.5fixed in 68.0≥ unspecified, < 682019-07-23
CVE-2019-11725 [MEDIUM] CVE-2019-11725: When a user navigates to site marked as unsafe by the Safebrowsing API, warning messages are display When a user navigates to site marked as unsafe by the Safebrowsing API, warning messages are displayed and navigation is interrupted but resources from the same site loaded through websockets are not blocked, leading to the loading of unsafe resources and bypassing safebrowsing protections. This vulnerability affects Firefox < 68.
nvdosv
CVE-2019-17020P4MEDIUMCVSS 6.5fixed in 72.0vbefore 722020-01-08
CVE-2019-17020 [MEDIUM] CWE-611 CVE-2019-17020: If an XML file is served with a Content Security Policy and the XML file includes an XSL stylesheet, If an XML file is served with a Content Security Policy and the XML file includes an XSL stylesheet, the Content Security Policy will not be applied to the contents of the XSL stylesheet. If the XSL sheet e.g. includes JavaScript, it would bypass any of the restrictions of the Content Security Policy applied to the XML document. This vulnerability a
nvdosv
CVE-2006-2775P4HIGHCVSS 7.5≤ 1.5.0.3v0.8+17 more2006-06-02
CVE-2006-2775 [HIGH] CWE-264 CVE-2006-2775: Mozilla Firefox and Thunderbird before 1.5.0.4 associates XUL attributes with the wrong URL under ce Mozilla Firefox and Thunderbird before 1.5.0.4 associates XUL attributes with the wrong URL under certain unspecified circumstances, which might allow remote attackers to bypass restrictions by causing a persisted string to be associated with the wrong URL.
nvd
CVE-2021-38505P4MEDIUMCVSS 6.5fixed in 94.0≥ unspecified, < 942021-12-08
CVE-2021-38505 [MEDIUM] CWE-668 CVE-2021-38505: Microsoft introduced a new feature in Windows 10 known as Cloud Clipboard which, if enabled, will re Microsoft introduced a new feature in Windows 10 known as Cloud Clipboard which, if enabled, will record data copied to the clipboard to the cloud, and make it available on other computers in certain scenarios. Applications that wish to prevent copied data from being recorded in Cloud History must use specific clipboard formats; and Firefox before v
nvd
CVE-2023-5169P4MEDIUMCVSS 6.5fixed in 118≥ unspecified, < 1182023-09-27
CVE-2023-5169 [MEDIUM] CWE-787 CVE-2023-5169: A compromised content process could have provided malicious data in a `PathRecording` resulting in a A compromised content process could have provided malicious data in a `PathRecording` resulting in an out-of-bounds write, leading to a potentially exploitable crash in a privileged process. This vulnerability affects Firefox < 118, Firefox ESR < 115.3, and Thunderbird < 115.3.
nvdosv
CVE-2023-5732P4MEDIUMCVSS 6.5fixed in 117.0≥ unspecified, < 1172023-10-25
CVE-2023-5732 [MEDIUM] CVE-2023-5732: An attacker could have created a malicious link using bidirectional characters to spoof the location An attacker could have created a malicious link using bidirectional characters to spoof the location in the address bar when visited. This vulnerability affects Firefox < 117, Firefox ESR < 115.4, and Thunderbird < 115.4.1.
nvd
CVE-2023-6865P4MEDIUMCVSS 6.5fixed in 121.0≥ unspecified, < 1212023-12-19
CVE-2023-6865 [MEDIUM] CVE-2023-6865: `EncryptingOutputStream` was susceptible to exposing uninitialized data. This issue could only be a `EncryptingOutputStream` was susceptible to exposing uninitialized data. This issue could only be abused in order to write data to a local disk which may have implications for private browsing mode. This vulnerability affects Firefox ESR < 115.6 and Firefox < 121.
nvdosv
CVE-2023-5727P4MEDIUMCVSS 6.5fixed in 119.0≥ unspecified, < 1192023-10-25
CVE-2023-5727 [MEDIUM] CVE-2023-5727: The executable file warning was not presented when downloading .msix, .msixbundle, .appx, and .appxb The executable file warning was not presented when downloading .msix, .msixbundle, .appx, and .appxbundle files, which can run commands on a user's computer. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.* This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.
nvd
CVE-2023-4053P4MEDIUMCVSS 6.5fixed in 116.0≥ unspecified, < 1162023-08-01
CVE-2023-4053 [MEDIUM] CWE-59 CVE-2023-4053: A website could have obscured the full screen notification by using a URL with a scheme handled by a A website could have obscured the full screen notification by using a URL with a scheme handled by an external program, such as a mailto URL. This could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 116, Firefox ESR < 115.2, and Thunderbird < 115.2.
nvd
CVE-2022-45410P4MEDIUMCVSS 6.5fixed in 107.0≥ unspecified, < 1072022-12-22
CVE-2022-45410 [MEDIUM] CWE-862 CVE-2022-45410: When a ServiceWorker intercepted a request with <code>FetchEvent</code>, the origin of the request w When a ServiceWorker intercepted a request with FetchEvent, the origin of the request was lost after the ServiceWorker took ownership of it. This had the effect of negating SameSite cookie protections. This was addressed in the spec and then in browsers. This vulnerability affects Firefox ESR < 102.5, Thunderbird < 102.5, and Firefox < 107.
nvd
Mozilla Firefox vulnerabilities | cvebase