Mozilla Firefox vulnerabilities

3,029 known vulnerabilities affecting mozilla/firefox.

Total CVEs
3,029
CISA KEV
15
actively exploited
Public exploits
121
Exploited in wild
20
Severity breakdown
CRITICAL853HIGH879MEDIUM1228LOW69

Vulnerabilities

Page 22 of 152
CVE-2024-5692MEDIUMCVSS 6.5fixed in 115.12fixed in 127.0+1 more2024-06-11
CVE-2024-5692 [MEDIUM] CVE-2024-5692: On Windows 10, when using the 'Save As' functionality, an attacker could have tricked the browser in On Windows 10, when using the 'Save As' functionality, an attacker could have tricked the browser into saving the file with a disallowed extension such as `.url` by including an invalid character in the extension. *Note:* This issue only affected Windows operating systems. Other operating systems are unaffected. This vulnerability affects Firefox < 127, Firef
cvelistv5nvd
CVE-2024-5697MEDIUMCVSS 4.3fixed in 127≥ unspecified, < 1272024-06-11
CVE-2024-5697 [MEDIUM] CWE-203 CVE-2024-5697: A website was able to detect when a user took a screenshot of a page using the built-in Screenshot f A website was able to detect when a user took a screenshot of a page using the built-in Screenshot functionality in Firefox. This vulnerability affects Firefox < 127.
cvelistv5nvdosv
CVE-2024-5691MEDIUMCVSS 4.7fixed in 127.0≥ unspecified, < 1272024-06-11
CVE-2024-5691 [MEDIUM] CWE-693 CVE-2024-5691: By tricking the browser with a `X-Frame-Options` header, a sandboxed iframe could have presented a b By tricking the browser with a `X-Frame-Options` header, a sandboxed iframe could have presented a button that, if clicked by a user, would bypass restrictions to open a new window. This vulnerability affects Firefox < 127, Firefox ESR < 115.12, and Thunderbird < 115.12.
cvelistv5nvd
CVE-2024-4764CRITICALCVSS 9.8fixed in 126.0≥ unspecified, < 1262024-05-14
CVE-2024-4764 [CRITICAL] CWE-416 CVE-2024-4764: Multiple WebRTC threads could have claimed a newly connected audio input leading to use-after-free. Multiple WebRTC threads could have claimed a newly connected audio input leading to use-after-free. This vulnerability affects Firefox < 126.
cvelistv5nvdosv
CVE-2024-4778CRITICALCVSS 9.8fixed in 126.0≥ unspecified, < 1262024-05-14
CVE-2024-4778 [CRITICAL] CWE-1260 CVE-2024-4778: Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption a Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 126.
cvelistv5nvdosv
CVE-2024-4776HIGHCVSS 8.2fixed in 126.0≥ unspecified, < 1262024-05-14
CVE-2024-4776 [HIGH] CWE-79 CVE-2024-4776: A file dialog shown while in full-screen mode could have resulted in the window remaining disabled. A file dialog shown while in full-screen mode could have resulted in the window remaining disabled. This vulnerability affects Firefox < 126.
cvelistv5nvdosv
CVE-2024-4773HIGHCVSS 7.5fixed in 126.0≥ unspecified, < 1262024-05-14
CVE-2024-4773 [HIGH] CWE-601 CVE-2024-4773: When a network error occurred during page load, the prior content could have remained in view with a When a network error occurred during page load, the prior content could have remained in view with a blank URL bar. This could have been used to obfuscate a spoofed web site. This vulnerability affects Firefox < 126.
cvelistv5nvdosv
CVE-2024-4367HIGHCVSS 8.8PoCfixed in 115.11.0fixed in 126.02024-05-14
CVE-2024-4367 [HIGH] CWE-754 CVE-2024-4367: A type check was missing when handling fonts in PDF.js, which would allow arbitrary JavaScript execu A type check was missing when handling fonts in PDF.js, which would allow arbitrary JavaScript execution in the PDF.js context. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.
cvelistv5nvd
CVE-2024-4771HIGHCVSS 8.6fixed in 126.0≥ unspecified, < 1262024-05-14
CVE-2024-4771 [HIGH] CWE-416 CVE-2024-4771: A memory allocation check was missing which would lead to a use-after-free if the allocation failed. A memory allocation check was missing which would lead to a use-after-free if the allocation failed. This could have triggered a crash or potentially be leveraged to achieve code execution. This vulnerability affects Firefox < 126.
cvelistv5nvdosv
CVE-2024-4765HIGHCVSS 8.1fixed in 126.0≥ unspecified, < 1262024-05-14
CVE-2024-4765 [HIGH] CWE-327 CVE-2024-4765: Web application manifests were stored by using an insecure MD5 hash which allowed for a hash collisi Web application manifests were stored by using an insecure MD5 hash which allowed for a hash collision to overwrite another application's manifest. This could have been exploited to run arbitrary code in another application's context. *This issue only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affects Fire
cvelistv5nvd
CVE-2024-4777HIGHCVSS 8.8fixed in 115.11.0fixed in 126.0+1 more2024-05-14
CVE-2024-4777 [HIGH] CWE-787 CVE-2024-4777: Memory safety bugs present in Firefox 125, Firefox ESR 115.10, and Thunderbird 115.10. Some of these Memory safety bugs present in Firefox 125, Firefox ESR 115.10, and Thunderbird 115.10. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.
cvelistv5nvd
CVE-2024-4770HIGHCVSS 8.8fixed in 115.11.0fixed in 126.0+1 more2024-05-14
CVE-2024-4770 [HIGH] CWE-416 CVE-2024-4770: When saving a page to PDF, certain font styles could have led to a potential use-after-free crash. T When saving a page to PDF, certain font styles could have led to a potential use-after-free crash. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.
cvelistv5nvd
CVE-2024-4768MEDIUMCVSS 6.1fixed in 115.11.0fixed in 126.0+1 more2024-05-14
CVE-2024-4768 [MEDIUM] CWE-281 CVE-2024-4768: A bug in popup notifications' interaction with WebAuthn made it easier for an attacker to trick a us A bug in popup notifications' interaction with WebAuthn made it easier for an attacker to trick a user into granting permissions. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.
cvelistv5nvd
CVE-2024-4774MEDIUMCVSS 6.5fixed in 126.0≥ unspecified, < 1262024-05-14
CVE-2024-4774 [MEDIUM] CWE-758 CVE-2024-4774: The `ShmemCharMapHashEntry()` code was susceptible to potentially undefined behavior by bypassing th The `ShmemCharMapHashEntry()` code was susceptible to potentially undefined behavior by bypassing the move semantics for one of its data members. This vulnerability affects Firefox < 126.
cvelistv5nvdosv
CVE-2024-4767MEDIUMCVSS 4.3fixed in 115.11.0fixed in 126.0+1 more2024-05-14
CVE-2024-4767 [MEDIUM] CWE-459 CVE-2024-4767: If the `browser.privatebrowsing.autostart` preference is enabled, IndexedDB files were not properly If the `browser.privatebrowsing.autostart` preference is enabled, IndexedDB files were not properly deleted when the window was closed. This preference is disabled by default in Firefox. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.
cvelistv5nvdosv
CVE-2024-4772MEDIUMCVSS 5.9fixed in 126.0≥ unspecified, < 1262024-05-14
CVE-2024-4772 [MEDIUM] CWE-338 CVE-2024-4772: An HTTP digest authentication nonce value was generated using `rand()` which could lead to predictab An HTTP digest authentication nonce value was generated using `rand()` which could lead to predictable values. This vulnerability affects Firefox < 126.
cvelistv5nvdosv
CVE-2024-4775MEDIUMCVSS 5.9fixed in 126.0≥ unspecified, < 1262024-05-14
CVE-2024-4775 [MEDIUM] CWE-431 CVE-2024-4775: An iterator stop condition was missing when handling WASM code in the built-in profiler, potentially An iterator stop condition was missing when handling WASM code in the built-in profiler, potentially leading to invalid memory access and undefined behavior. *Note:* This issue only affects the application when the profiler is running. This vulnerability affects Firefox < 126.
cvelistv5nvdosv
CVE-2024-4769MEDIUMCVSS 5.9fixed in 115.11.0fixed in 126.0+1 more2024-05-14
CVE-2024-4769 [MEDIUM] CWE-351 CVE-2024-4769: When importing resources using Web Workers, error messages would distinguish the difference between When importing resources using Web Workers, error messages would distinguish the difference between `application/javascript` responses and non-script responses. This could have been abused to learn information cross-origin. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.
cvelistv5nvd
CVE-2024-4766MEDIUMCVSS 4.3fixed in 126.0≥ unspecified, < 1262024-05-14
CVE-2024-4766 [MEDIUM] CVE-2024-4766: Different techniques existed to obscure the fullscreen notification in Firefox for Android. These c Different techniques existed to obscure the fullscreen notification in Firefox for Android. These could have led to potential user confusion and spoofing attacks. *This bug only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox < 126.
cvelistv5nvd
CVE-2024-3863CRITICALCVSS 9.8fixed in 115.10.0fixed in 125.0+1 more2024-04-16
CVE-2024-3863 [CRITICAL] CWE-434 CVE-2024-3863: The executable file warning was not presented when downloading .xrm-ms files. *Note: This issue on The executable file warning was not presented when downloading .xrm-ms files. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.* This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 115.10.
cvelistv5nvd