Mozilla Firefox vulnerabilities
3,233 known vulnerabilities affecting mozilla/firefox.
Total CVEs
3,233
CISA KEV
15
actively exploited
Public exploits
126
Exploited in wild
34
Severity breakdown
CRITICAL914HIGH970MEDIUM1277LOW69UNKNOWN3
Vulnerabilities
Page 137 of 162
CVE-2013-1693P4MEDIUMCVSS 4.3≤ 21.0v19.0+11 more2013-06-26
CVE-2013-1693 [MEDIUM] CWE-264 CVE-2013-1693: The SVG filter implementation in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunde
The SVG filter implementation in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 allows remote attackers to read pixel values, and possibly bypass the Same Origin Policy and read text from a different domain, by observing timing differences in execution of filter code.
nvd
CVE-2009-2470P4MEDIUMCVSS 5.0≤ 3.5.1v0.1+92 more2009-08-04
CVE-2009-2470 [MEDIUM] CWE-20 CVE-2009-2470: Mozilla Firefox before 3.0.12, and 3.5.x before 3.5.2, allows remote SOCKS5 proxy servers to cause a
Mozilla Firefox before 3.0.12, and 3.5.x before 3.5.2, allows remote SOCKS5 proxy servers to cause a denial of service (data stream corruption) via a long domain name in a reply.
nvd
CVE-2012-0447P4MEDIUMCVSS 5.0v4.0v4.0.1+9 more2012-02-01
CVE-2012-0447 [MEDIUM] CWE-200 CVE-2012-0447: Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and SeaMonkey before 2.7 do not proper
Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and SeaMonkey before 2.7 do not properly initialize data for image/vnd.microsoft.icon images, which allows remote attackers to obtain potentially sensitive information by reading a PNG image that was created through conversion from an ICO image.
nvd
CVE-2005-2704P4MEDIUMCVSS 5.0≤ 1.0.6v1.0+5 more2005-09-23
CVE-2005-2704 [MEDIUM] CVE-2005-2704: Firefox before 1.0.7 and Mozilla Suite before 1.7.12 allows remote attackers to spoof DOM objects vi
Firefox before 1.0.7 and Mozilla Suite before 1.7.12 allows remote attackers to spoof DOM objects via an XBL control that implements an internal XPCOM interface.
nvd
CVE-2006-3810P4MEDIUMCVSS 6.8v1.5v1.5.0.1+3 more2006-07-27
CVE-2006-3810 [MEDIUM] CVE-2006-3810: Cross-site scripting (XSS) vulnerability in Mozilla Firefox 1.5 before 1.5.0.5, Thunderbird before 1
Cross-site scripting (XSS) vulnerability in Mozilla Firefox 1.5 before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allows remote attackers to inject arbitrary web script or HTML via the XPCNativeWrapper(window).Function construct.
nvd
CVE-2013-6672P4MEDIUMCVSS 4.3fixed in 26.02013-12-11
CVE-2013-6672 [MEDIUM] CWE-200 CVE-2013-6672: Mozilla Firefox before 26.0 and SeaMonkey before 2.23 on Linux allow user-assisted remote attackers
Mozilla Firefox before 26.0 and SeaMonkey before 2.23 on Linux allow user-assisted remote attackers to read clipboard data by leveraging certain middle-click paste operations.
nvd
CVE-2016-5293P4MEDIUMCVSS 5.5fixed in 45.5.0fixed in 50.0+1 more2018-06-11
CVE-2016-5293 [MEDIUM] CWE-20 CVE-2016-5293: When the Mozilla Updater is run, if the Updater's log file in the working directory points to a hard
When the Mozilla Updater is run, if the Updater's log file in the working directory points to a hardlink, data can be appended to an arbitrary local file. This vulnerability requires local system access. Note: this issue only affects Windows operating systems. This vulnerability affects Firefox ESR < 45.5 and Firefox < 50.
nvd
CVE-2017-5414P4MEDIUMCVSS 5.5fixed in 52.0≥ unspecified, < 522018-06-11
CVE-2017-5414 [MEDIUM] CWE-200 CVE-2017-5414: The file picker dialog can choose and display the wrong local default directory when instantiated. O
The file picker dialog can choose and display the wrong local default directory when instantiated. On some operating systems, this can lead to information disclosure, such as the operating system or the local account name. This vulnerability affects Firefox < 52 and Thunderbird < 52.
nvdosv
CVE-2017-7761P4MEDIUMCVSS 5.5fixed in 52.2.0fixed in 54.0+1 more2018-06-11
CVE-2017-7761 [MEDIUM] CWE-276 CVE-2017-7761: The Mozilla Maintenance Service "helper.exe" application creates a temporary directory writable by n
The Mozilla Maintenance Service "helper.exe" application creates a temporary directory writable by non-privileged users. When this is combined with creation of a junction (a form of symbolic link), protected files in the target directory of the junction can be deleted by the Mozilla Maintenance Service, which has privileged access. Note: This attack r
nvd
CVE-2014-1484P4MEDIUMCVSS 5.0≤ 26.0v0.1+196 more2014-02-06
CVE-2014-1484 [MEDIUM] CWE-200 CVE-2014-1484: Mozilla Firefox before 27.0 on Android 4.2 and earlier creates system-log entries containing profile
Mozilla Firefox before 27.0 on Android 4.2 and earlier creates system-log entries containing profile paths, which allows attackers to obtain sensitive information via a crafted application.
nvd
CVE-2015-2721P4MEDIUMCVSS 4.3≥ 0, < 39.0+build5-0ubuntu0.14.04.12015-07-09
CVE-2015-2721 [MEDIUM] firefox vulnerabilities
firefox vulnerabilities
Karthikeyan Bhargavan discovered that NSS incorrectly handled state
transitions for the TLS state machine. If a remote attacker were able to
perform a machine-in-the-middle attack, this flaw could be exploited to skip
the ServerKeyExchange message and remove the forward-secrecy property.
(CVE-2015-2721)
Looben Yan discovered 2 use-after-free issues when using XMLHttpRequest in
some circumstances. If a user were tricked in t
osv
CVE-2014-1527P4MEDIUMCVSS 5.0≤ 28.0v0.1+199 more2014-04-30
CVE-2014-1527 [MEDIUM] CVE-2014-1527: Mozilla Firefox before 29.0 on Android allows remote attackers to spoof the address bar via crafted
Mozilla Firefox before 29.0 on Android allows remote attackers to spoof the address bar via crafted JavaScript code that uses DOM events to prevent the reemergence of the actual address bar after scrolling has taken it off of the screen.
nvd
CVE-2023-4054P4MEDIUMCVSS 5.5fixed in 116.0≥ 102.0, < 102.14+2 more2023-08-01
CVE-2023-4054 [MEDIUM] CVE-2023-4054: When opening appref-ms files, Firefox did not warn the user that these files may contain malicious c
When opening appref-ms files, Firefox did not warn the user that these files may contain malicious code.
*This bug only affects Firefox on Windows. Other operating systems are unaffected.* This vulnerability affects Firefox < 116, Firefox ESR < 102.14, Firefox ESR < 115.1, Thunderbird < 102.14, and Thunderbird < 115.1.
nvd
CVE-2014-1516P4MEDIUMCVSS 5.0≤ 28.0.12014-03-29
CVE-2014-1516 [MEDIUM] CWE-264 CVE-2014-1516: The saltProfileName function in base/GeckoProfileDirectories.java in Mozilla Firefox through 28.0.1
The saltProfileName function in base/GeckoProfileDirectories.java in Mozilla Firefox through 28.0.1 on Android relies on Android's weak approach to seeding the Math.random function, which makes it easier for attackers to bypass a profile-randomization protection mechanism via a crafted application.
nvd
CVE-2011-3653P4MEDIUMCVSS 5.0≤ 7.0.1v0.1+108 more2011-11-09
CVE-2011-3653 [MEDIUM] CWE-200 CVE-2011-3653: Mozilla Firefox before 8.0 and Thunderbird before 8.0 on Mac OS X do not properly interact with the
Mozilla Firefox before 8.0 and Thunderbird before 8.0 on Mac OS X do not properly interact with the GPU memory behavior of a certain driver for Intel integrated GPUs, which allows remote attackers to bypass the Same Origin Policy and read image data via vectors related to WebGL textures.
nvd
CVE-2015-4519P4MEDIUMCVSS 4.3v38.0v38.0.1+6 more2015-09-24
CVE-2015-4519 [MEDIUM] CWE-200 CVE-2015-4519: Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allow user-assisted remote attackers to
Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allow user-assisted remote attackers to bypass intended access restrictions and discover a redirect's target URL via crafted JavaScript code that executes after a drag-and-drop action of an image into a TEXTBOX element.
nvdosv
CVE-2011-2370P4MEDIUMCVSS 5.0≤ 4.0.1v1.0+105 more2011-06-30
CVE-2011-2370 [MEDIUM] CWE-264 CVE-2011-2370: Mozilla Firefox before 5.0 does not properly enforce the whitelist for the xpinstall functionality,
Mozilla Firefox before 5.0 does not properly enforce the whitelist for the xpinstall functionality, which allows remote attackers to trigger an installation dialog for a (1) add-on or (2) theme via unspecified vectors.
nvd
CVE-2007-3511P4MEDIUMCVSS 4.3≤ 2.0.0.7v1.5.0.12+3 more2007-07-03
CVE-2007-3511 [MEDIUM] CVE-2007-3511: The focus handling for the onkeydown event in Mozilla Firefox 1.5.0.12, 2.0.0.4 and other versions b
The focus handling for the onkeydown event in Mozilla Firefox 1.5.0.12, 2.0.0.4 and other versions before 2.0.0.8, and SeaMonkey before 1.1.5 allows remote attackers to change field focus and copy keystrokes via the "for" attribute in a label, which bypasses the focus prevention, as demonstrated by changing focus from a textarea to a file upload field.
nvd
CVE-2013-5614P4MEDIUMCVSS 4.3fixed in 26.02013-12-11
CVE-2013-5614 [MEDIUM] CWE-1021 CVE-2013-5614: Mozilla Firefox before 26.0 and SeaMonkey before 2.23 do not properly consider the sandbox attribute
Mozilla Firefox before 26.0 and SeaMonkey before 2.23 do not properly consider the sandbox attribute of an IFRAME element during processing of a contained OBJECT element, which allows remote attackers to bypass intended sandbox restrictions via a crafted web site.
nvd
CVE-2006-1729P4MEDIUMCVSS 4.3≥ 1.0, < 1.0.8≥ 1.5, < 1.5.0.22006-04-14
CVE-2006-1729 [MEDIUM] CWE-20 CVE-2006-1729: Mozilla Firefox 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonke
Mozilla Firefox 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0.1 allows remote attackers to read arbitrary files by (1) inserting the target filename into a text box, then turning that box into a file upload control, or (2) changing the type of the input control that is associated with an event handler.
nvd