Mozilla Firefox vulnerabilities
3,233 known vulnerabilities affecting mozilla/firefox.
Total CVEs
3,233
CISA KEV
15
actively exploited
Public exploits
126
Exploited in wild
34
Severity breakdown
CRITICAL914HIGH970MEDIUM1277LOW69UNKNOWN3
Vulnerabilities
Page 123 of 162
CVE-2014-1561P4MEDIUMCVSS 5.8≤ 30.02014-07-23
CVE-2014-1561 [MEDIUM] CWE-264 CVE-2014-1561: Mozilla Firefox before 31.0 does not properly restrict use of drag-and-drop events to spoof customiz
Mozilla Firefox before 31.0 does not properly restrict use of drag-and-drop events to spoof customization events, which allows remote attackers to alter the placement of UI icons via crafted JavaScript code that is encountered during (1) page, (2) panel, or (3) toolbar customization.
nvdosv
CVE-2016-9903P4MEDIUMCVSS 6.1fixed in 50.1≥ unspecified, < 50.12018-06-11
CVE-2016-9903 [MEDIUM] CWE-79 CVE-2016-9903: Mozilla's add-ons SDK had a world-accessible resource with an HTML injection vulnerability. If an ad
Mozilla's add-ons SDK had a world-accessible resource with an HTML injection vulnerability. If an additional vulnerability allowed this resource to be loaded as a document it could allow injecting content and script into an add-on's context. This vulnerability affects Firefox < 50.1.
nvdosv
CVE-2011-2377P4MEDIUMCVSS 5.0≤ 3.6.17v1.0+105 more2011-06-30
CVE-2011-2377 [MEDIUM] CWE-119 CVE-2011-2377: Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, Thunderbird before 3.1.11, and SeaMonkey throug
Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a multipart/x-mixed-replace image.
nvd
CVE-2017-5389P4MEDIUMCVSS 6.1fixed in 51.0≥ unspecified, < 512018-06-11
CVE-2017-5389 [MEDIUM] CWE-601 CVE-2017-5389: WebExtensions could use the "mozAddonManager" API by modifying the CSP headers on sites with the app
WebExtensions could use the "mozAddonManager" API by modifying the CSP headers on sites with the appropriate permissions and then using host requests to redirect script loads to a malicious site. This allows a malicious extension to then install additional extensions without explicit user permission. This vulnerability affects Firefox < 51.
nvdosv
CVE-2008-7293P4MEDIUMCVSS 5.8≤ 4.0v1.0+105 more2011-08-09
CVE-2008-7293 [MEDIUM] CWE-264 CVE-2008-7293: Mozilla Firefox before 4 cannot properly restrict modifications to cookies established in HTTPS sess
Mozilla Firefox before 4 cannot properly restrict modifications to cookies established in HTTPS sessions, which allows man-in-the-middle attackers to overwrite or delete arbitrary cookies via a Set-Cookie header in an HTTP response, related to lack of the HTTP Strict Transport Security (HSTS) includeSubDomains feature, aka a "cookie forcing" issue.
nvd
CVE-2022-40956P4MEDIUMCVSS 6.1fixed in 105.0≥ unspecified, < 1052022-12-22
CVE-2022-40956 [MEDIUM] CWE-79 CVE-2022-40956: When injecting an HTML base element, some requests would ignore the CSP's base-uri settings and acce
When injecting an HTML base element, some requests would ignore the CSP's base-uri settings and accept the injected element's base instead. This vulnerability affects Firefox ESR < 102.3, Thunderbird < 102.3, and Firefox < 105.
nvd
CVE-2021-23974P4MEDIUMCVSS 6.1fixed in 86.0fixed in 862021-02-26
CVE-2021-23974 [MEDIUM] CVE-2021-23974: The DOMParser API did not properly process '<noscript>' elements for escaping. This could be used as
The DOMParser API did not properly process '' elements for escaping. This could be used as an mXSS vector to bypass an HTML Sanitizer. This vulnerability affects Firefox < 86.
nvdosv
CVE-2022-45418P4MEDIUMCVSS 6.1fixed in 107.0≥ unspecified, < 1072022-12-22
CVE-2022-45418 [MEDIUM] CWE-1021 CVE-2022-45418: If a custom mouse cursor is specified in CSS, under certain circumstances the cursor could have been
If a custom mouse cursor is specified in CSS, under certain circumstances the cursor could have been drawn over the browser UI, resulting in potential user confusion or spoofing attacks. This vulnerability affects Firefox ESR < 102.5, Thunderbird < 102.5, and Firefox < 107.
nvd
CVE-2020-26979P4MEDIUMCVSS 6.1fixed in 84.0≥ unspecified, < 842021-01-07
CVE-2020-26979 [MEDIUM] CWE-601 CVE-2020-26979: When a user typed a URL in the address bar or the search bar and quickly hit the enter key, a websit
When a user typed a URL in the address bar or the search bar and quickly hit the enter key, a website could sometimes capture that event and then redirect the user before navigation occurred to the desired, entered address. To construct a convincing spoof the attacker would have had to guess what the user was typing, perhaps by suggesting it. This v
nvdosv
CVE-2005-2264P4HIGHCVSS 7.5v0.8v0.9+10 more2005-07-13
CVE-2005-2264 [HIGH] CVE-2005-2264: Firefox before 1.0.5 allows remote attackers to steal sensitive information by opening a malicious l
Firefox before 1.0.5 allows remote attackers to steal sensitive information by opening a malicious link in the Firefox sidebar using the _search target, then injecting script into other pages via a data: URL.
nvd
CVE-2021-29953P4MEDIUMCVSS 6.1fixed in 88.0.1fixed in 88.1.3+1 more2021-06-24
CVE-2021-29953 [MEDIUM] CWE-79 CVE-2021-29953: A malicious webpage could have forced a Firefox for Android user into executing attacker-controlled
A malicious webpage could have forced a Firefox for Android user into executing attacker-controlled JavaScript in the context of another domain, resulting in a Universal Cross-Site Scripting vulnerability. *Note: This issue only affected Firefox for Android. Other operating systems are unaffected. Further details are being temporarily withheld to allo
nvd
CVE-2022-29912P4MEDIUMCVSS 6.1fixed in 100.0≥ unspecified, < 1002022-12-22
CVE-2022-29912 [MEDIUM] CWE-601 CVE-2022-29912: Requests initiated through reader mode did not properly omit cookies with a SameSite attribute. This
Requests initiated through reader mode did not properly omit cookies with a SameSite attribute. This vulnerability affects Thunderbird < 91.9, Firefox ESR < 91.9, and Firefox < 100.
nvd
CVE-2017-5408P4MEDIUMCVSS 5.3fixed in 52.0fixed in 45.8.0+1 more2018-06-11
CVE-2017-5408 [MEDIUM] CWE-200 CVE-2017-5408: Video files loaded video captions cross-origin without checking for the presence of CORS headers per
Video files loaded video captions cross-origin without checking for the presence of CORS headers permitting such cross-origin use, leading to potential information disclosure for video captions. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.
nvd
CVE-2017-5405P4MEDIUMCVSS 5.3fixed in 52.0fixed in 45.8.0+1 more2018-06-11
CVE-2017-5405 [MEDIUM] CWE-1187 CVE-2017-5405: Certain response codes in FTP connections can result in the use of uninitialized values for ports in
Certain response codes in FTP connections can result in the use of uninitialized values for ports in FTP operations. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.
nvd
CVE-2015-4478P4MEDIUMCVSS 5.0≤ 39.0.3v38.0+3 more2015-08-16
CVE-2015-4478 [MEDIUM] CWE-200 CVE-2015-4478: Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 do not impose certain ECMAScript 6 requ
Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 do not impose certain ECMAScript 6 requirements on JavaScript object properties, which allows remote attackers to bypass the Same Origin Policy via the reviver parameter to the JSON.parse method.
nvdosv
CVE-2019-11762P4MEDIUMCVSS 6.1fixed in 70.0vbefore 702020-01-08
CVE-2019-11762 [MEDIUM] CWE-346 CVE-2019-11762: If two same-origin documents set document.domain differently to become cross-origin, it was possible
If two same-origin documents set document.domain differently to become cross-origin, it was possible for them to call arbitrary DOM methods/getters/setters on the now-cross-origin window. This vulnerability affects Firefox < 70, Thunderbird < 68.2, and Firefox ESR < 68.2.
nvd
CVE-2021-43544P4MEDIUMCVSS 6.1fixed in 95.0≥ unspecified, < 952021-12-08
CVE-2021-43544 [MEDIUM] CWE-79 CVE-2021-43544: When receiving a URL through a SEND intent, Firefox would have searched for the text, but subsequent
When receiving a URL through a SEND intent, Firefox would have searched for the text, but subsequent usages of the address bar might have caused the URL to load unintentionally, which could lead to XSS and spoofing attacks. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 95.
nvd
CVE-2008-1240P4MEDIUMCVSS 5.0≤ 2.0.0.122008-03-28
CVE-2008-1240 [MEDIUM] CVE-2008-1240: LiveConnect in Mozilla Firefox before 2.0.0.13 and SeaMonkey before 1.1.9 does not properly parse th
LiveConnect in Mozilla Firefox before 2.0.0.13 and SeaMonkey before 1.1.9 does not properly parse the content origin for jar: URIs before sending them to the Java plugin, which allows remote attackers to access arbitrary ports on the local machine. NOTE: this is closely related to CVE-2008-1195.
nvd
CVE-2023-34415P4MEDIUMCVSS 6.1fixed in 114.0≥ unspecified, < 1142023-06-19
CVE-2023-34415 [MEDIUM] CWE-601 CVE-2023-34415: When choosing a site-isolated process for a document loaded from a data: URL that was the result of
When choosing a site-isolated process for a document loaded from a data: URL that was the result of a redirect, Firefox would load that document in the same process as the site that issued the redirect. This bypassed the site-isolation protections against Spectre-like attacks on sites that host an "open redirect". Firefox no longer follows HTTP redir
nvdosv
CVE-2019-17003P4MEDIUMCVSS 6.1≤ 25.02023-02-16
CVE-2019-17003 [MEDIUM] CWE-79 CVE-2019-17003: Scanning a QR code that contained a javascript: URL would have resulted in the Javascript being exec
Scanning a QR code that contained a javascript: URL would have resulted in the Javascript being executed.
nvd