Mozilla Firefox vulnerabilities
3,233 known vulnerabilities affecting mozilla/firefox.
Total CVEs
3,233
CISA KEV
15
actively exploited
Public exploits
126
Exploited in wild
34
Severity breakdown
CRITICAL914HIGH970MEDIUM1277LOW69UNKNOWN3
Vulnerabilities
Page 132 of 162
CVE-2012-1959P4MEDIUMCVSS 5.0v4.0v4.0.1+20 more2012-07-18
CVE-2012-1959 [MEDIUM] CWE-264 CVE-2012-1959: Mozilla Firefox 4.x through 13.0, Firefox ESR 10.x before 10.0.6, Thunderbird 5.0 through 13.0, Thun
Mozilla Firefox 4.x through 13.0, Firefox ESR 10.x before 10.0.6, Thunderbird 5.0 through 13.0, Thunderbird ESR 10.x before 10.0.6, and SeaMonkey before 2.11 do not consider the presence of same-compartment security wrappers (SCSW) during the cross-compartment wrapping of objects, which allows remote attackers to bypass intended XBL access restriction
nvd
CVE-2008-1238P4MEDIUMCVSS 5.0≤ 2.0.0.122008-03-27
CVE-2008-1238 [MEDIUM] CWE-287 CVE-2008-1238: Mozilla Firefox before 2.0.0.13 and SeaMonkey before 1.1.9, when generating the HTTP Referer header,
Mozilla Firefox before 2.0.0.13 and SeaMonkey before 1.1.9, when generating the HTTP Referer header, does not list the entire URL when it contains Basic Authentication credentials without a username, which makes it easier for remote attackers to bypass application protection mechanisms that rely on Referer headers, such as with some Cross-Site Request
nvd
CVE-2008-5015P4MEDIUMCVSS 5.1≤ 3.0.3v3.0+2 more2008-11-13
CVE-2008-5015 [MEDIUM] CWE-94 CVE-2008-5015: Mozilla Firefox 3.x before 3.0.4 assigns chrome privileges to a file: URI when it is accessed in the
Mozilla Firefox 3.x before 3.0.4 assigns chrome privileges to a file: URI when it is accessed in the same tab from a chrome or privileged about: page, which makes it easier for user-assisted attackers to execute arbitrary JavaScript with chrome privileges via malicious code in a file that has already been saved on the local system.
nvd
CVE-2017-7837P4MEDIUMCVSS 5.3≤ 56.0.2≥ unspecified, < 572018-06-11
CVE-2017-7837 [MEDIUM] CWE-20 CVE-2017-7837: SVG loaded through "<img>" tags can use "<meta>" tags within the SVG data to set cookies for that pa
SVG loaded through "" tags can use "" tags within the SVG data to set cookies for that page. This vulnerability affects Firefox < 57.
nvdosv
CVE-2018-5140P4MEDIUMCVSS 5.3fixed in 59.0≥ unspecified, < 592018-06-11
CVE-2018-5140 [MEDIUM] CWE-200 CVE-2018-5140: Image for moz-icons can be accessed through the "moz-icon:" protocol through script in web content e
Image for moz-icons can be accessed through the "moz-icon:" protocol through script in web content even when otherwise prohibited. This could allow for information leakage of which applications are associated with specific MIME types by a malicious page. This vulnerability affects Firefox < 59.
nvdosv
CVE-2017-5418P4MEDIUMCVSS 5.3fixed in 52.0≥ unspecified, < 522018-06-11
CVE-2017-5418 [MEDIUM] CWE-125 CVE-2017-5418: An out of bounds read error occurs when parsing some HTTP digest authorization responses, resulting
An out of bounds read error occurs when parsing some HTTP digest authorization responses, resulting in information leakage through the reading of random memory containing matches to specifically set patterns. This vulnerability affects Firefox < 52 and Thunderbird < 52.
nvdosv
CVE-2024-11703P4MEDIUMCVSS 5.7fixed in 133.0≥ unspecified, < 1332024-11-26
CVE-2024-11703 [MEDIUM] CWE-522 CVE-2024-11703: On Android, Firefox may have inadvertently allowed viewing saved passwords without the required devi
On Android, Firefox may have inadvertently allowed viewing saved passwords without the required device PIN authentication. This vulnerability affects Firefox < 133.
nvd
CVE-2017-5417P4MEDIUMCVSS 5.3fixed in 52.0≥ unspecified, < 522018-06-11
CVE-2017-5417 [MEDIUM] CWE-20 CVE-2017-5417: When dragging content from the primary browser pane to the addressbar on a malicious site, it is pos
When dragging content from the primary browser pane to the addressbar on a malicious site, it is possible to change the addressbar so that the displayed location following navigation does not match the URL of the newly loaded page. This allows for spoofing attacks. This vulnerability affects Firefox < 52.
nvdosv
CVE-2008-0367P4MEDIUMCVSS 5.0≤ 2.0.0.11v3.02008-01-19
CVE-2008-0367 [MEDIUM] CWE-200 CVE-2008-0367: Mozilla Firefox 2.0.0.11, 3.0b2, and possibly earlier versions, when prompting for HTTP Basic Authen
Mozilla Firefox 2.0.0.11, 3.0b2, and possibly earlier versions, when prompting for HTTP Basic Authentication, displays the site requesting the authentication after the Realm text, which might make it easier for remote HTTP servers to conduct phishing and spoofing attacks.
nvd
CVE-2011-2362P4MEDIUMCVSS 5.0≤ 3.6.17v1.0+103 more2011-06-30
CVE-2011-2362 [MEDIUM] CWE-264 CVE-2011-2362: Mozilla Firefox before 3.6.18, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14 do not distin
Mozilla Firefox before 3.6.18, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14 do not distinguish between cookies for two domain names that differ only in a trailing dot, which allows remote web servers to bypass the Same Origin Policy via Set-Cookie headers.
nvd
CVE-2018-12383P4MEDIUMCVSS 5.5fixed in 62.0≥ unspecified, < 622018-10-18
CVE-2018-12383 [MEDIUM] CWE-522 CVE-2018-12383: If a user saved passwords before Firefox 58 and then later set a master password, an unencrypted cop
If a user saved passwords before Firefox 58 and then later set a master password, an unencrypted copy of these passwords is still accessible. This is because the older stored password file was not deleted when the data was copied to a new format starting in Firefox 58. The new master password is added only on the new file. This could allow the expos
nvd
CVE-2015-0800P4MEDIUMCVSS 5.0≤ 36.0.42015-04-01
CVE-2015-0800 [MEDIUM] CVE-2015-0800: The PRNG implementation in the DNS resolver in Mozilla Firefox (aka Fennec) before 37.0 on Android d
The PRNG implementation in the DNS resolver in Mozilla Firefox (aka Fennec) before 37.0 on Android does not properly generate random numbers for query ID values and UDP source ports, which makes it easier for remote attackers to spoof DNS responses by guessing these numbers, a related issue to CVE-2012-2808.
nvd
CVE-2021-23977P4MEDIUMCVSS 5.3fixed in 86.0fixed in 862021-02-26
CVE-2021-23977 [MEDIUM] CWE-367 CVE-2021-23977: Firefox for Android suffered from a time-of-check-time-of-use vulnerability that allowed a malicious
Firefox for Android suffered from a time-of-check-time-of-use vulnerability that allowed a malicious application to read sensitive data from application directories. Note: This issue is only affected Firefox for Android. Other operating systems are unaffected. This vulnerability affects Firefox < 86.
nvd
CVE-2019-17018P4MEDIUMCVSS 5.3fixed in 72.0vbefore 722020-01-08
CVE-2019-17018 [MEDIUM] CWE-200 CVE-2019-17018: When in Private Browsing Mode on Windows 10, the Windows keyboard may retain word suggestions to imp
When in Private Browsing Mode on Windows 10, the Windows keyboard may retain word suggestions to improve the accuracy of the keyboard. This vulnerability affects Firefox < 72.
nvd
CVE-2017-5409P4MEDIUMCVSS 5.5fixed in 52.0fixed in 45.8.0+1 more2018-06-11
CVE-2017-5409 [MEDIUM] CWE-269 CVE-2017-5409: The Mozilla Windows updater can be called by a non-privileged user to delete an arbitrary local file
The Mozilla Windows updater can be called by a non-privileged user to delete an arbitrary local file by passing a special path to the callback parameter through the Mozilla Maintenance Service, which has privileged access. Note: This attack requires local system access and only affects Windows. Other operating systems are not affected. This vulnerabil
nvd
CVE-2017-7768P4MEDIUMCVSS 5.5fixed in 52.2.0fixed in 54.0+1 more2018-06-11
CVE-2017-7768 [MEDIUM] CWE-200 CVE-2017-7768: The Mozilla Maintenance Service can be invoked by an unprivileged user to read 32 bytes of any arbit
The Mozilla Maintenance Service can be invoked by an unprivileged user to read 32 bytes of any arbitrary file on the local system by convincing the service that it is reading a status file provided by the Mozilla Windows Updater. The Mozilla Maintenance Service executes with privileged access, bypassing system protections against unprivileged users. N
nvd
CVE-2017-7767P4MEDIUMCVSS 5.5fixed in 52.2.0fixed in 54.0+1 more2018-06-11
CVE-2017-7767 [MEDIUM] CWE-269 CVE-2017-7767: The Mozilla Maintenance Service can be invoked by an unprivileged user to overwrite arbitrary files
The Mozilla Maintenance Service can be invoked by an unprivileged user to overwrite arbitrary files with junk data using the Mozilla Windows Updater, which runs with the Maintenance Service's privileged access. Note: This attack requires local system access and only affects Windows. Other operating systems are not affected. This vulnerability affects F
nvd
CVE-2017-5427P4MEDIUMCVSS 5.5fixed in 52.0≥ unspecified, < 522018-06-11
CVE-2017-5427 [MEDIUM] CWE-362 CVE-2017-5427: A non-existent chrome.manifest file will attempt to be loaded during startup from the primary instal
A non-existent chrome.manifest file will attempt to be loaded during startup from the primary installation directory. If a malicious user with local access puts chrome.manifest and other referenced files in this directory, they will be loaded and activated during startup. This could result in malicious software being added without consent or modificat
nvdosv
CVE-2019-11737P4MEDIUMCVSS 5.3fixed in 69.0≥ unspecified, < 692019-09-27
CVE-2019-11737 [MEDIUM] CWE-345 CVE-2019-11737: If a wildcard ('*') is specified for the host in Content Security Policy (CSP) directives, any port
If a wildcard ('*') is specified for the host in Content Security Policy (CSP) directives, any port or path restriction of the directive will be ignored, leading to CSP directives not being properly applied to content. This vulnerability affects Firefox < 69.
nvdosv
CVE-2004-0765P4HIGHCVSS 7.5≤ 0.92004-08-18
CVE-2004-0765 [HIGH] CVE-2004-0765: The cert_TestHostName function in Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7
The cert_TestHostName function in Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, only checks the hostname portion of a certificate when the hostname portion of the URI is not a fully qualified domain name (FQDN), which allows remote attackers to spoof trusted certificates.
nvd