cbcvebase.

Mozilla Firefox vulnerabilities

3,233 known vulnerabilities affecting mozilla/firefox.

Total CVEs
3,233
CISA KEV
15
actively exploited
Public exploits
126
Exploited in wild
34
Severity breakdown
CRITICAL914HIGH970MEDIUM1277LOW69UNKNOWN3

Vulnerabilities

Page 24 of 162
CVE-2025-13014P3HIGHCVSS 8.8fixed in 115.30.0fixed in 145.0+1 more2025-11-11
CVE-2025-13014 [HIGH] CWE-416 CVE-2025-13014: Use-after-free in the Audio/Video component. This vulnerability was fixed in Firefox 145, Firefox ES Use-after-free in the Audio/Video component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Firefox ESR 115.30, Thunderbird 145, and Thunderbird 140.5.
nvd
CVE-2026-16371P3HIGHCVSS 8.8fixed in 140.13.0fixed in 153.0.02026-07-21
CVE-2026-16371 [HIGH] CWE-269 CVE-2026-16371: Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153, Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
nvdmozilla
CVE-2025-13020P3HIGHCVSS 8.8fixed in 140.5.0fixed in 145.02025-11-11
CVE-2025-13020 [HIGH] CWE-416 CVE-2025-13020: Use-after-free in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 145, Fi Use-after-free in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Thunderbird 145, and Thunderbird 140.5.
nvd
CVE-2026-16396P3HIGHCVSS 8.8fixed in 140.13.0fixed in 153.0.02026-07-21
CVE-2026-16396 [HIGH] CWE-269 CVE-2026-16396: Privilege escalation in WebExtensions. This vulnerability was fixed in Firefox 153, Firefox ESR 140. Privilege escalation in WebExtensions. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
nvdmozilla
CVE-2010-1198P3CRITICALCVSS 9.3v3.5v3.5.1+10 more2010-06-24
CVE-2010-1198 [CRITICAL] CWE-399 CVE-2010-1198: Use-after-free vulnerability in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, and SeaM Use-after-free vulnerability in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, and SeaMonkey before 2.0.5, allows remote attackers to execute arbitrary code via vectors involving multiple plugin instances.
nvd
CVE-2024-4771P3HIGHCVSS 8.6fixed in 126.0≥ unspecified, < 1262024-05-14
CVE-2024-4771 [HIGH] CWE-416 CVE-2024-4771: A memory allocation check was missing which would lead to a use-after-free if the allocation failed. A memory allocation check was missing which would lead to a use-after-free if the allocation failed. This could have triggered a crash or potentially be leveraged to achieve code execution. This vulnerability affects Firefox < 126.
nvdosv
CVE-2013-1735P3CRITICALCVSS 9.3≤ 23.0.1v19.0+16 more2013-09-18
CVE-2013-1735 [CRITICAL] CWE-20 CVE-2013-1735: Use-after-free vulnerability in the mozilla::layout::ScrollbarActivity function in Mozilla Firefox b Use-after-free vulnerability in the mozilla::layout::ScrollbarActivity function in Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 allows remote attackers to execute arbitrary code via vectors related to image-document scrolling.
nvd
CVE-2012-3962P3CRITICALCVSS 9.3v10.0v10.0.1+133 more2012-08-29
CVE-2012-3962 [CRITICAL] CVE-2012-3962: Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ES Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey before 2.12 do not properly iterate through the characters in a text run, which allows remote attackers to execute arbitrary code via a crafted document.
nvd
CVE-2026-8958P3HIGHCVSS 8.6fixed in 140.11.0fixed in 151.0.02026-05-19
CVE-2026-8958 [HIGH] CWE-668 CVE-2026-8958: Information disclosure, sandbox escape in the Security: Process Sandboxing component. This vulnerabi Information disclosure, sandbox escape in the Security: Process Sandboxing component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11.
nvdmozilla
CVE-2014-1513P3HIGHCVSS 8.8fixed in 28.0≥ 24.0, < 24.42014-03-19
CVE-2014-1513 [HIGH] CWE-787 CVE-2014-1513: TypedArrayObject.cpp in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird befor TypedArrayObject.cpp in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 does not prevent a zero-length transition during use of an ArrayBuffer object, which allows remote attackers to execute arbitrary code or cause a denial of service (heap-based out-of-bounds write or read) via a crafted we
nvd
CVE-2005-0989P4MEDIUMCVSS 5.0PoCv1.0.1v1.0.22005-05-02
CVE-2005-0989 [MEDIUM] CVE-2005-0989: The find_replen function in jsstr.c in the Javascript engine for Mozilla Suite 1.7.6, Firefox 1.0.1 The find_replen function in jsstr.c in the Javascript engine for Mozilla Suite 1.7.6, Firefox 1.0.1 and 1.0.2, and Netscape 7.2 allows remote attackers to read portions of heap memory in a Javascript string via the lambda replace method.
nvd
CVE-2012-5835P3CRITICALCVSS 10.0fixed in 10.0.11fixed in 17.02012-11-21
CVE-2012-5835 [CRITICAL] CWE-190 CVE-2012-5835: Integer overflow in the WebGL subsystem in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0 Integer overflow in the WebGL subsystem in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (invalid write operation) via crafted data.
nvd
CVE-2018-5122P3CRITICALCVSS 9.8≤ 57.0.4≥ unspecified, < 582018-06-11
CVE-2018-5122 [CRITICAL] CWE-190 CVE-2018-5122: A potential integer overflow in the "DoCrypt" function of WebCrypto was identified. If a means was f A potential integer overflow in the "DoCrypt" function of WebCrypto was identified. If a means was found of exploiting it, it could result in an out-of-bounds write. This vulnerability affects Firefox < 58.
nvdosv
CVE-2010-3775P3CRITICALCVSS 9.3v3.6v3.6.2+112 more2010-12-10
CVE-2010-3775 [CRITICAL] CVE-2010-3775: Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, does not properl Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, does not properly handle certain redirections involving data: URLs and Java LiveConnect scripts, which allows remote attackers to start processes, read arbitrary local files, and establish network connections via vectors involving a refresh value in the http-equiv attribute
nvd
CVE-2014-1509P3HIGHCVSS 8.8fixed in 28.0≥ 24.0, < 24.42014-03-19
CVE-2014-1509 [HIGH] CWE-120 CVE-2014-1509: Buffer overflow in the _cairo_truetype_index_to_ucs4 function in cairo, as used in Mozilla Firefox b Buffer overflow in the _cairo_truetype_index_to_ucs4 function in cairo, as used in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25, allows remote attackers to execute arbitrary code via a crafted extension that renders fonts in a PDF document.
nvd
CVE-2012-0444P3CRITICALCVSS 10.0fixed in 3.6.26≥ 4.0, < 10.02012-02-01
CVE-2012-0444 [CRITICAL] CWE-119 CVE-2012-0444: Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, an Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 do not properly initialize nsChildView data structures, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted Ogg Vorbis file.
nvd
CVE-2019-11693P3CRITICALCVSS 9.8fixed in 60.7.0fixed in 67.0+1 more2019-07-23
CVE-2019-11693 [CRITICAL] CWE-787 CVE-2019-11693: The bufferdata function in WebGL is vulnerable to a buffer overflow with specific graphics drivers o The bufferdata function in WebGL is vulnerable to a buffer overflow with specific graphics drivers on Linux. This could result in malicious content freezing a tab or triggering a potentially exploitable crash. *Note: this issue only occurs on Linux. Other operating systems are unaffected.*. This vulnerability affects Thunderbird < 60.7, Firefox <
nvd
CVE-2025-3030P3HIGHCVSS 8.1fixed in 128.8.0fixed in 136.02025-04-01
CVE-2025-3030 [HIGH] CWE-416 CVE-2025-3030: Memory safety bugs present in Firefox 136, Thunderbird 136, Firefox ESR 128.8, and Thunderbird 128.8 Memory safety bugs present in Firefox 136, Thunderbird 136, Firefox ESR 128.8, and Thunderbird 128.8. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 137, Firefox ESR 128.9, Thunderbird 137, and Thunderbir
nvd
CVE-2025-5268P3HIGHCVSS 8.1fixed in 128.11.0fixed in 139.02025-05-27
CVE-2025-5268 [HIGH] CWE-119 CVE-2025-5268: Memory safety bugs present in Firefox 138, Thunderbird 138, Firefox ESR 128.10, and Thunderbird 128. Memory safety bugs present in Firefox 138, Thunderbird 138, Firefox ESR 128.10, and Thunderbird 128.10. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 139, Firefox ESR 128.11, Thunderbird 139, and Thunder
nvd
CVE-2026-12326P3HIGHCVSS 8.1fixed in 152.0.02026-06-16
CVE-2026-12326 [HIGH] CWE-119 CVE-2026-12326: Memory safety bugs present in Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of Memory safety bugs present in Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 152 and Thunderbird 152.
nvdmozilla
Mozilla Firefox vulnerabilities | cvebase