cbcvebase.

Mozilla Firefox vulnerabilities

3,233 known vulnerabilities affecting mozilla/firefox.

Total CVEs
3,233
CISA KEV
15
actively exploited
Public exploits
126
Exploited in wild
34
Severity breakdown
CRITICAL914HIGH970MEDIUM1277LOW69UNKNOWN3

Vulnerabilities

Page 122 of 162
CVE-2024-5687P4MEDIUMCVSS 5.3fixed in 127.0≥ unspecified, < 1272024-06-11
CVE-2024-5687 [MEDIUM] CWE-284 CVE-2024-5687: If a specific sequence of actions is performed when opening a new tab, the triggering principal asso If a specific sequence of actions is performed when opening a new tab, the triggering principal associated with the new tab may have been incorrect. The triggering principal is used to calculate many values, including the `Referer` and `Sec-*` headers, meaning there is the potential for incorrect security checks within the browser in addition to incor
nvd
CVE-2026-6774P4MEDIUMCVSS 5.4fixed in 150.02026-04-21
CVE-2026-6774 [MEDIUM] CWE-693 CVE-2026-6774: Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150 and Th Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.
nvdmozilla
CVE-2024-9395P4MEDIUMCVSS 5.3fixed in 131.0≥ unspecified, < 1312024-10-01
CVE-2024-9395 [MEDIUM] CVE-2024-9395: A specially crafted filename containing a large number of spaces could obscure the file's extension A specially crafted filename containing a large number of spaces could obscure the file's extension when displayed in the download dialog. *This bug only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox < 131.
nvd
CVE-2026-8391P4MEDIUMCVSS 5.3fixed in 150.0.32026-05-12
CVE-2026-8391 [MEDIUM] CWE-20 CVE-2026-8391: Other issue in the JavaScript Engine component. This vulnerability was fixed in Firefox 150.0.3, Fir Other issue in the JavaScript Engine component. This vulnerability was fixed in Firefox 150.0.3, Firefox ESR 115.36, Firefox ESR 140.11, and Thunderbird 140.11.
nvdmozilla
CVE-2007-3734P4CRITICALCVSS 9.3v2.0v2.0.0.1+3 more2007-07-18
CVE-2007-3734 [CRITICAL] CVE-2007-3734: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 2.0.0.5 and Thu Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 2.0.0.5 and Thunderbird before 2.0.0.5 allow remote attackers to cause a denial of service (crash) via unspecified vectors that trigger memory corruption.
nvd
CVE-2007-3735P4CRITICALCVSS 9.3v2.0v2.0.0.1+3 more2007-07-18
CVE-2007-3735 [CRITICAL] CVE-2007-3735: Multiple unspecified vulnerabilities in the JavaScript engine in Mozilla Firefox before 2.0.0.5 and Multiple unspecified vulnerabilities in the JavaScript engine in Mozilla Firefox before 2.0.0.5 and Thunderbird before 2.0.0.5 allow remote attackers to cause a denial of service (crash) via unspecified vectors that trigger memory corruption.
nvd
CVE-2014-1523P4MEDIUMCVSS 6.5fixed in 29.0≥ 24.0, < 24.52014-04-30
CVE-2014-1523 [MEDIUM] CWE-787 CVE-2014-1523: Heap-based buffer overflow in the read_u32 function in Mozilla Firefox before 29.0, Firefox ESR 24.x Heap-based buffer overflow in the read_u32 function in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG image.
nvdosv
CVE-2009-0776P4HIGHCVSS 7.1≤ 3.0.6v1.0+48 more2009-03-05
CVE-2009-0776 [HIGH] CWE-200 CVE-2009-0776: nsIRDFService in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1 nsIRDFService in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to bypass the same-origin policy and read XML data from another domain via a cross-domain redirect.
nvd
CVE-2008-5506P4MEDIUMCVSS 6.8≥ 2.0, < 2.0.0.19≥ 3.0, < 3.0.52008-12-17
CVE-2008-5506 [MEDIUM] CWE-264 CVE-2008-5506: Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird 2.x before 2.0.0.19, and SeaMo Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 allows remote attackers to bypass the same origin policy by causing the browser to issue an XMLHttpRequest to an attacker-controlled resource that uses a 302 redirect to a resource in a different domain, then reading content from
nvd
CVE-2006-5462P4MEDIUMCVSS 6.4v1.5v1.5.0.1+6 more2006-11-08
CVE-2006-5462 [MEDIUM] CVE-2006-5462: Mozilla Network Security Service (NSS) library before 3.11.3, as used in Mozilla Firefox before 1.5. Mozilla Network Security Service (NSS) library before 3.11.3, as used in Mozilla Firefox before 1.5.0.8, Thunderbird before 1.5.0.8, and SeaMonkey before 1.0.6, when using an RSA key with exponent 3, does not properly handle extra data in a signature, which allows remote attackers to forge signatures for SSL/TLS and email certificates. NOTE: this identifier i
nvd
CVE-2013-0799P4HIGHCVSS 7.2≤ 19.0.2v19.0+6 more2013-04-03
CVE-2013-0799 [HIGH] CWE-119 CVE-2013-0799: Buffer overflow in the Mozilla Maintenance Service in Mozilla Firefox before 20.0, Firefox ESR 17.x Buffer overflow in the Mozilla Maintenance Service in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, and Thunderbird ESR 17.x before 17.0.5 on Windows allows local users to gain privileges via crafted arguments.
nvd
CVE-2014-8638P4MEDIUMCVSS 6.8v31.0v31.1.0+3 more2015-01-14
CVE-2014-8638 [MEDIUM] CWE-352 CVE-2014-8638: The navigator.sendBeacon implementation in Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4 The navigator.sendBeacon implementation in Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4, Thunderbird before 31.4, and SeaMonkey before 2.32 omits the CORS Origin header, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site.
nvdosv
CVE-2016-5292P4MEDIUMCVSS 6.5fixed in 50.0≥ unspecified, < 502018-06-11
CVE-2016-5292 [MEDIUM] CWE-20 CVE-2016-5292: During URL parsing, a maliciously crafted URL can cause a potentially exploitable crash. This vulner During URL parsing, a maliciously crafted URL can cause a potentially exploitable crash. This vulnerability affects Firefox < 50.
nvdosv
CVE-2013-0791P4MEDIUMCVSS 5.0≤ 20.0≥ 17.0, < 17.0.52013-04-03
CVE-2013-0791 [MEDIUM] CWE-119 CVE-2013-0791: The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla F The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, SeaMonkey before 2.17, and other products, allows remote attackers to cause a denial of service (out-of-bounds read and memory corruption)
nvd
CVE-2018-5169P4MEDIUMCVSS 6.5fixed in 60.0≥ unspecified, < 602018-06-11
CVE-2018-5169 [MEDIUM] CWE-20 CVE-2018-5169: If manipulated hyperlinked text with "chrome:" URL contained in it is dragged and dropped on the "ho If manipulated hyperlinked text with "chrome:" URL contained in it is dragged and dropped on the "home" icon, the home page can be reset to include a normally-unlinkable chrome page as one of the home page tabs. This vulnerability affects Firefox < 60.
nvdosv
CVE-2019-17022P4MEDIUMCVSS 6.1fixed in 72.0vbefore 722020-01-08
CVE-2019-17022 [MEDIUM] CWE-79 CVE-2019-17022: When pasting a &lt;style&gt; tag from the clipboard into a rich text editor, the CSS sanitizer does When pasting a tag from the clipboard into a rich text editor, the CSS sanitizer does not escape characters. Because the resulting string is pasted directly into the text node of the element this does not result in a direct injection into the webpage; however, if a webpage subsequently copies the node's innerHTML, assigning it to another innerHTML, th
nvd
CVE-2006-3803P4MEDIUMCVSS 5.1v1.5v1.5.0.1+3 more2006-07-27
CVE-2006-3803 [MEDIUM] CVE-2006-3803: Race condition in the JavaScript garbage collection in Mozilla Firefox 1.5 before 1.5.0.5, Thunderbi Race condition in the JavaScript garbage collection in Mozilla Firefox 1.5 before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 might allow remote attackers to execute arbitrary code by causing the garbage collector to delete a temporary variable while it is still being used during the creation of a new Function object.
nvd
CVE-2011-2669P4MEDIUMCVSS 6.5fixed in 3.6vprior to 3.62020-01-21
CVE-2011-2669 [MEDIUM] CWE-295 CVE-2011-2669: Mozilla Firefox prior to 3.6 has a DoS vulnerability due to an issue in the validation of certificat Mozilla Firefox prior to 3.6 has a DoS vulnerability due to an issue in the validation of certificates.
nvd
CVE-2017-7834P4MEDIUMCVSS 6.1≤ 56.0.2≥ unspecified, < 572018-06-11
CVE-2017-7834 [MEDIUM] CWE-79 CVE-2017-7834: A "data:" URL loaded in a new tab did not inherit the Content Security Policy (CSP) of the original A "data:" URL loaded in a new tab did not inherit the Content Security Policy (CSP) of the original page, allowing for bypasses of the policy including the execution of JavaScript. In prior versions when "data:" documents also inherited the context of the original page this would allow for potential cross-site scripting (XSS) attacks. This vulnerability
nvdosv
CVE-2021-43530P4MEDIUMCVSS 6.1fixed in 94.0≥ unspecified, < 942021-12-08
CVE-2021-43530 [MEDIUM] CWE-79 CVE-2021-43530: A Universal XSS vulnerability was present in Firefox for Android resulting from improper sanitizatio A Universal XSS vulnerability was present in Firefox for Android resulting from improper sanitization when processing a URL scanned from a QR code. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 94.
nvd
Mozilla Firefox vulnerabilities | cvebase