cbcvebase.

Mozilla Firefox vulnerabilities

3,233 known vulnerabilities affecting mozilla/firefox.

Total CVEs
3,233
CISA KEV
15
actively exploited
Public exploits
126
Exploited in wild
34
Severity breakdown
CRITICAL914HIGH970MEDIUM1277LOW69UNKNOWN3

Vulnerabilities

Page 154 of 162
CVE-2015-4482P4MEDIUMCVSS 4.6≤ 39.0.3v38.0+3 more2015-08-16
CVE-2015-4482 [MEDIUM] CWE-119 CVE-2015-4482: mar_read.c in the Updater in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 allows loc mar_read.c in the Updater in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 allows local users to gain privileges or cause a denial of service (out-of-bounds write) via a crafted name of a Mozilla Archive (aka MAR) file.
nvd
CVE-2013-1671P4MEDIUMCVSS 4.3≤ 20.0.1v19.0+3 more2013-05-16
CVE-2013-1671 [MEDIUM] CWE-20 CVE-2013-1671: Mozilla Firefox before 21.0 does not properly implement the INPUT element, which allows remote attac Mozilla Firefox before 21.0 does not properly implement the INPUT element, which allows remote attackers to obtain the full pathname via a crafted web site.
nvd
CVE-2015-7223P4MEDIUMCVSS 4.0≤ 42.02015-12-16
CVE-2015-7223 [MEDIUM] CWE-264 CVE-2015-7223: The WebExtension APIs in Mozilla Firefox before 43.0 allow remote attackers to gain privileges, and The WebExtension APIs in Mozilla Firefox before 43.0 allow remote attackers to gain privileges, and possibly obtain sensitive information or conduct cross-site scripting (XSS) attacks, via a crafted web site.
nvdosv
CVE-2020-6810P4MEDIUMCVSS 4.3fixed in 74.0≥ unspecified, < 742020-03-25
CVE-2020-6810 [MEDIUM] CWE-290 CVE-2020-6810: After a website had entered fullscreen mode, it could have used a previously opened popup to obscure After a website had entered fullscreen mode, it could have used a previously opened popup to obscure the notification that indicates the browser is in fullscreen mode. Combined with spoofing the browser chrome, this could have led to confusing the user about the current origin of the page and credential theft or other attacks. This vulnerability affec
nvdosv
CVE-2013-1696P4MEDIUMCVSS 4.0≤ 21.0v19.0+4 more2013-06-26
CVE-2013-1696 [MEDIUM] CWE-264 CVE-2013-1696: Mozilla Firefox before 22.0 does not properly enforce the X-Frame-Options protection mechanism, whic Mozilla Firefox before 22.0 does not properly enforce the X-Frame-Options protection mechanism, which allows remote attackers to conduct clickjacking attacks via a crafted web site that uses the HTTP server push feature with multipart responses.
nvd
CVE-2020-26963P4MEDIUMCVSS 4.3fixed in 83.0fixed in 832020-12-09
CVE-2020-26963 [MEDIUM] CVE-2020-26963: Repeated calls to the history and location interfaces could have been used to hang the browser. This Repeated calls to the history and location interfaces could have been used to hang the browser. This was addressed by introducing rate-limiting to these API calls. This vulnerability affects Firefox < 83.
nvdosv
CVE-2020-12404P4MEDIUMCVSS 4.3fixed in 26.02020-07-09
CVE-2020-12404 [MEDIUM] CWE-79 CVE-2020-12404: For native-to-JS bridging the app requires a unique token to be passed that ensures non-app code can For native-to-JS bridging the app requires a unique token to be passed that ensures non-app code can't call the bridging functions. That token could leak when used for downloading files. This vulnerability affects Firefox for iOS < 26.
nvd
CVE-2021-29962P4MEDIUMCVSS 4.3fixed in 89.0≥ unspecified, < 892021-06-24
CVE-2021-29962 [MEDIUM] CWE-404 CVE-2021-29962: Firefox for Android would become unstable and hard-to-recover when a website opened too many popups. Firefox for Android would become unstable and hard-to-recover when a website opened too many popups. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 89.
nvd
CVE-2020-15665P4MEDIUMCVSS 4.3fixed in 80.0≥ unspecified, < 802020-10-01
CVE-2020-15665 [MEDIUM] CVE-2020-15665: Firefox did not reset the address bar after the beforeunload dialog was shown if the user chose to r Firefox did not reset the address bar after the beforeunload dialog was shown if the user chose to remain on the page. This could have resulted in an incorrect URL being shown when used in conjunction with other unexpected browser behaviors. This vulnerability affects Firefox < 80.
nvdosv
CVE-2013-5594P4MEDIUMCVSS 4.3fixed in 25.0vbefore 20132020-02-18
CVE-2013-5594 [MEDIUM] CWE-1021 CVE-2013-5594: Mozilla Firefox before 25 allows modification of anonymous content of pluginProblem.xml binding Mozilla Firefox before 25 allows modification of anonymous content of pluginProblem.xml binding
nvd
CVE-2021-29958P4MEDIUMCVSS 4.3fixed in 34.02021-06-24
CVE-2021-29958 [MEDIUM] CWE-862 CVE-2021-29958: When a download was initiated, the client did not check whether it was in normal or private browsing When a download was initiated, the client did not check whether it was in normal or private browsing mode, which led to private mode cookies being shared in normal browsing mode. This vulnerability affects Firefox for iOS < 34.
nvd
CVE-2021-24001P4MEDIUMCVSS 4.3fixed in 88.0≥ unspecified, < 882021-06-24
CVE-2021-24001 [MEDIUM] CWE-668 CVE-2021-24001: A compromised content process could have performed session history manipulations it should not have A compromised content process could have performed session history manipulations it should not have been able to due to testing infrastructure that was not restricted to testing-only configurations. This vulnerability affects Firefox < 88.
nvdosv
CVE-2009-3274P4MEDIUMCVSS 4.4v2.0v2.0.0.1+39 more2009-09-21
CVE-2009-3274 [MEDIUM] CVE-2009-3274: Mozilla Firefox 3.6a1, 3.5.3, 3.5.2, and earlier 3.5.x versions, and 3.0.14 and earlier 2.x and 3.x Mozilla Firefox 3.6a1, 3.5.3, 3.5.2, and earlier 3.5.x versions, and 3.0.14 and earlier 2.x and 3.x versions, on Linux uses a predictable /tmp pathname for files selected from the Downloads window, which allows local users to replace an arbitrary downloaded file by placing a file in a /tmp location before the download occurs, related to the Download Manager co
nvd
CVE-2022-22749P4MEDIUMCVSS 4.3fixed in 96.0≥ unspecified, < 962022-12-22
CVE-2022-22749 [MEDIUM] CWE-20 CVE-2022-22749: When scanning QR codes, Firefox for Android would have allowed navigation to some URLs that do not p When scanning QR codes, Firefox for Android would have allowed navigation to some URLs that do not point to web content.*This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 96.
nvd
CVE-2021-4221P4MEDIUMCVSS 4.3fixed in 92.0≥ unspecified, < 922022-12-22
CVE-2021-4221 [MEDIUM] CWE-1007 CVE-2021-4221: If a domain name contained a RTL character, it would cause the domain to be rendered to the right of If a domain name contained a RTL character, it would cause the domain to be rendered to the right of the path. This could lead to user confusion and spoofing attacks. *This bug only affects Firefox for Android. Other operating systems are unaffected.**Note*: Due to a clerical error this advisory was not included in the original announcement, and was
nvd
CVE-2022-45417P4MEDIUMCVSS 4.3fixed in 107.0≥ unspecified, < 1072022-12-22
CVE-2022-45417 [MEDIUM] CWE-1021 CVE-2022-45417: Service Workers did not detect Private Browsing Mode correctly in all cases, which could have led to Service Workers did not detect Private Browsing Mode correctly in all cases, which could have led to Service Workers being written to disk for websites visited in Private Browsing Mode. This would not have persisted them in a state where they would run again, but it would have leaked Private Browsing Mode details to disk. This vulnerability affects
nvd
CVE-2022-31745P4MEDIUMCVSS 4.3fixed in 101.0≥ unspecified, < 1012022-12-22
CVE-2022-31745 [MEDIUM] CWE-129 CVE-2022-31745: If array shift operations are not used, the Garbage Collector may have become confused about valid o If array shift operations are not used, the Garbage Collector may have become confused about valid objects. This vulnerability affects Firefox < 101.
nvdosv
CVE-2021-43531P4MEDIUMCVSS 4.3fixed in 94.0≥ unspecified, < 942021-12-08
CVE-2021-43531 [MEDIUM] CWE-346 CVE-2021-43531: When a user loaded a Web Extensions context menu, the Web Extension could access the post-redirect U When a user loaded a Web Extensions context menu, the Web Extension could access the post-redirect URL of the element clicked. If the Web Extension lacked the WebRequest permission for the hosts involved in the redirect, this would be a same-origin-violation leaking data the Web Extension should have access to. This was fixed to provide the pre-redi
nvdosv
CVE-2024-38313P4MEDIUMCVSS 4.3fixed in 127.02024-06-13
CVE-2024-38313 [MEDIUM] CWE-451 CVE-2024-38313: In certain scenarios a malicious website could attempt to display a fake location URL bar which coul In certain scenarios a malicious website could attempt to display a fake location URL bar which could mislead users as to the actual website address This vulnerability affects Firefox for iOS < 127.
nvd
CVE-2025-5020P4MEDIUMCVSS 4.3fixed in 139.02025-05-21
CVE-2025-5020 [MEDIUM] CWE-939 CVE-2025-5020: Opening maliciously-crafted URLs in Firefox from other apps such as Safari could have allowed attack Opening maliciously-crafted URLs in Firefox from other apps such as Safari could have allowed attackers to spoof website addresses if the URLs utilized non-HTTP schemes used internally by the Firefox iOS client. This vulnerability was fixed in Firefox for iOS 139.
nvd
Mozilla Firefox vulnerabilities | cvebase