cbcvebase.

Mozilla Firefox vulnerabilities

3,233 known vulnerabilities affecting mozilla/firefox.

Total CVEs
3,233
CISA KEV
15
actively exploited
Public exploits
126
Exploited in wild
34
Severity breakdown
CRITICAL914HIGH970MEDIUM1277LOW69UNKNOWN3

Vulnerabilities

Page 158 of 162
CVE-2013-0798P4MEDIUMCVSS 4.3≤ 19.0.2v19.0+1 more2013-04-03
CVE-2013-0798 [MEDIUM] CWE-264 CVE-2013-0798: Mozilla Firefox before 20.0 on Android uses world-writable and world-readable permissions for the ap Mozilla Firefox before 20.0 on Android uses world-writable and world-readable permissions for the app_tmp installation directory in the local filesystem, which allows attackers to modify add-ons before installation via an application that leverages the time window during which app_tmp is used.
nvd
CVE-2010-1213P4MEDIUMCVSS 4.3v3.5.1v3.5.2+13 more2010-07-30
CVE-2010-1213 [MEDIUM] CWE-20 CVE-2010-1213: The importScripts Web Worker method in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, T The importScripts Web Worker method in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 does not verify that content is valid JavaScript code, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted HTML doc
nvd
CVE-2010-5074P4MEDIUMCVSS 4.3≤ 3.6.24v3.0+56 more2011-12-07
CVE-2010-5074 [MEDIUM] CWE-362 CVE-2010-5074: The layout engine in Mozilla Firefox before 4.0, Thunderbird before 3.3, and SeaMonkey before 2.1 ex The layout engine in Mozilla Firefox before 4.0, Thunderbird before 3.3, and SeaMonkey before 2.1 executes different code for visited and unvisited links during the processing of Cascading Style Sheets (CSS) token sequences, which makes it easier for remote attackers to obtain sensitive information about visited web pages via a timing attack.
nvd
CVE-2019-11743P4LOWCVSS 3.7fixed in 60.9.0fixed in 69.0+1 more2019-09-27
CVE-2019-11743 [LOW] CWE-203 CVE-2019-11743: Navigation events were not fully adhering to the W3C's "Navigation-Timing Level 2" draft specificati Navigation events were not fully adhering to the W3C's "Navigation-Timing Level 2" draft specification in some instances for the unload event, which restricts access to detailed timing attributes to only be same-origin. This resulted in potential cross-origin information exposure of history through timing side-channel attacks. This vulnerability affect
nvd
CVE-2025-0239P4MEDIUMCVSS 4.0fixed in 128.6.0fixed in 134.02025-01-07
CVE-2025-0239 [MEDIUM] CWE-295 CVE-2025-0239: When using Alt-Svc, ALPN did not properly validate certificates when the original server is redirect When using Alt-Svc, ALPN did not properly validate certificates when the original server is redirecting to an insecure site. This vulnerability was fixed in Firefox 134, Firefox ESR 128.6, Thunderbird 134, and Thunderbird 128.6.
nvd
CVE-2025-10859P4MEDIUMCVSS 4.0fixed in 143.1.02025-09-30
CVE-2025-10859 [MEDIUM] CWE-359 CVE-2025-10859: Cookie storage for non-HTML temporary documents was being shared incorrectly with normal browsing co Cookie storage for non-HTML temporary documents was being shared incorrectly with normal browsing content, allowing information from private tabs to escape Incognito mode even after the user closed all tabs. This vulnerability was fixed in Firefox for iOS 143.1.
nvd
CVE-2024-3302P4LOWCVSS 3.7fixed in 115.10fixed in 125.0+1 more2024-04-16
CVE-2024-3302 [LOW] CWE-770 CVE-2024-3302: There was no limit to the number of HTTP/2 CONTINUATION frames that would be processed. A server cou There was no limit to the number of HTTP/2 CONTINUATION frames that would be processed. A server could abuse this to create an Out of Memory condition in the browser. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 115.10.
nvd
CVE-2005-0231P4LOWCVSS 2.6v1.02005-02-07
CVE-2005-0231 [LOW] CVE-2005-0231: Firefox 1.0 does not invoke the Javascript Security Manager when a user drags a javascript: or data: Firefox 1.0 does not invoke the Javascript Security Manager when a user drags a javascript: or data: URL to a tab, which allows remote attackers to bypass the security model, aka "firetabbing."
nvd
CVE-2006-1725P4LOWCVSS 2.6≥ 1.5, < 1.5.0.22006-04-14
CVE-2006-1725 [LOW] CWE-264 CVE-2006-1725: Mozilla Firefox 1.5 before 1.5.0.2 and SeaMonkey before 1.0.1 causes certain windows to become trans Mozilla Firefox 1.5 before 1.5.0.2 and SeaMonkey before 1.0.1 causes certain windows to become translucent due to an interaction between XUL content windows and the history mechanism, which might allow user-assisted remote attackers to trick users into executing arbitrary code.
nvd
CVE-2015-0820P4LOWCVSS 2.6≤ 35.0.1v0.1+213 more2015-02-25
CVE-2015-0820 [LOW] CWE-284 CVE-2015-0820: Mozilla Firefox before 36.0 does not properly restrict transitions of JavaScript objects from a non- Mozilla Firefox before 36.0 does not properly restrict transitions of JavaScript objects from a non-extensible state to an extensible state, which allows remote attackers to bypass a Caja Compiler sandbox protection mechanism or a Secure EcmaScript sandbox protection mechanism via a crafted web site.
nvdosv
CVE-2007-5339P4MEDIUMCVSS 4.3≤ 2.0.0.72007-10-21
CVE-2007-5339 [MEDIUM] CWE-20 CVE-2007-5339: Multiple vulnerabilities in Mozilla Firefox before 2.0.0.8, Thunderbird before 2.0.0.8, and SeaMonke Multiple vulnerabilities in Mozilla Firefox before 2.0.0.8, Thunderbird before 2.0.0.8, and SeaMonkey before 1.1.5 allow remote attackers to cause a denial of service (crash) via crafted HTML that triggers memory corruption or assert errors.
nvd
CVE-2007-5340P4MEDIUMCVSS 4.3≤ 2.0.0.72007-10-21
CVE-2007-5340 [MEDIUM] CWE-20 CVE-2007-5340: Multiple vulnerabilities in the Javascript engine in Mozilla Firefox before 2.0.0.8, Thunderbird bef Multiple vulnerabilities in the Javascript engine in Mozilla Firefox before 2.0.0.8, Thunderbird before 2.0.0.8, and SeaMonkey before 1.1.5 allow remote attackers to cause a denial of service (crash) via crafted HTML that triggers memory corruption.
nvd
CVE-2006-1732P4MEDIUMCVSS 4.3v1.0v1.0.1+7 more2006-04-14
CVE-2006-1732 [MEDIUM] CVE-2006-1732: Unspecified vulnerability in Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Unspecified vulnerability in Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 allows remote attackers to bypass same-origin protections and conduct cross-site scripting (XSS) attacks via unspecified vectors involving the window.controllers array.
nvd
CVE-2006-1731P4MEDIUMCVSS 4.3≤ 1.0.7v1.0+7 more2006-04-14
CVE-2006-1731 [MEDIUM] CWE-79 CVE-2006-1731: Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 returns the Object class prototype instead of the global window object when (1) .valueOf.call or (2) .valueOf.apply are called without any arguments, which allows remote attackers to conduct cross-site scripting (XSS) attacks.
nvd
CVE-2006-6507P4MEDIUMCVSS 4.3v2.02006-12-20
CVE-2006-6507 [MEDIUM] CVE-2006-6507: Mozilla Firefox 2.0 before 2.0.0.1 allows remote attackers to bypass Cross-Site Scripting (XSS) prot Mozilla Firefox 2.0 before 2.0.0.1 allows remote attackers to bypass Cross-Site Scripting (XSS) protection via vectors related to a Function.prototype regression error.
nvd
CVE-2006-2785P4MEDIUMCVSS 4.3≤ 1.5.0.32006-06-02
CVE-2006-2785 [MEDIUM] CVE-2006-2785: Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 1.5.0.4 allows user-assisted remo Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 1.5.0.4 allows user-assisted remote attackers to inject arbitrary web script or HTML by tricking a user into (1) performing a "View Image" on a broken image in which the SRC attribute contains a Javascript URL, or (2) selecting "Show only this frame" on a frame whose SRC attribute contains a J
nvd
CVE-2009-1306P4MEDIUMCVSS 4.3≤ 3.0.8v0.1+86 more2009-04-22
CVE-2009-1306 [MEDIUM] CWE-16 CVE-2009-1306: The jar: URI implementation in Mozilla Firefox before 3.0.9, Thunderbird, and SeaMonkey does not fol The jar: URI implementation in Mozilla Firefox before 3.0.9, Thunderbird, and SeaMonkey does not follow the Content-Disposition header of the inner URI, which allows remote attackers to conduct cross-site scripting (XSS) attacks and possibly other attacks via an uploaded .jar file with a "Content-Disposition: attachment" designation.
nvd
CVE-2007-1004P4MEDIUMCVSS 4.3v2.02007-02-20
CVE-2007-1004 [MEDIUM] CVE-2007-1004: Mozilla Firefox might allow remote attackers to conduct spoofing and phishing attacks by writing to Mozilla Firefox might allow remote attackers to conduct spoofing and phishing attacks by writing to an about:blank tab and overlaying the location bar.
nvd
CVE-2014-1591P4MEDIUMCVSS 4.3v33.02014-12-11
CVE-2014-1591 [MEDIUM] CWE-199 CVE-2014-1591: Mozilla Firefox 33.0 and SeaMonkey before 2.31 include path strings in CSP violation reports, which Mozilla Firefox 33.0 and SeaMonkey before 2.31 include path strings in CSP violation reports, which allows remote attackers to obtain sensitive information via a web site that receives a report after a redirect.
nvdosv
CVE-2007-5459P4MEDIUMCVSS 4.3v2.02007-10-14
CVE-2007-5459 [MEDIUM] CWE-79 CVE-2007-5459: Cross-site scripting (XSS) vulnerability in the sidebar HTML page in the MouseoverDictionary before Cross-site scripting (XSS) vulnerability in the sidebar HTML page in the MouseoverDictionary before 0.6.2 extension for Mozilla Firefox allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
nvd