Mozilla Firefox vulnerabilities

3,148 known vulnerabilities affecting mozilla/firefox.

Total CVEs
3,148
CISA KEV
17
actively exploited
Public exploits
122
Exploited in wild
22
Severity breakdown
CRITICAL862HIGH921MEDIUM1295LOW70

Vulnerabilities

Page 52 of 158
CVE-2020-15647HIGHCVSS 7.4fixed in 68.10.12020-08-10
CVE-2020-15647 [HIGH] CWE-200 CVE-2020-15647: A Content Provider in Firefox for Android allowed local files accessible by the browser to be read b A Content Provider in Firefox for Android allowed local files accessible by the browser to be read by a remote webpage, leading to sensitive data disclosure, including cookies for other origins. This vulnerability affects Firefox for < Android.
nvdmozilla
CVE-2020-15655MEDIUMCVSS 6.5fixed in 79.0≥ unspecified, < 792020-08-10
CVE-2020-15655 [MEDIUM] CVE-2020-15655: A redirected HTTP request which is observed or modified through a web extension could bypass existin A redirected HTTP request which is observed or modified through a web extension could bypass existing CORS checks, leading to potential disclosure of cross-origin information. This vulnerability affects Firefox ESR < 78.1, Firefox < 79, and Thunderbird < 78.1.
nvdosvmozilla
CVE-2020-15653MEDIUMCVSS 6.5fixed in 79.0≥ unspecified, < 792020-08-10
CVE-2020-15653 [MEDIUM] CVE-2020-15653: An iframe sandbox element with the allow-popups flag could be bypassed when using noopener links. Th An iframe sandbox element with the allow-popups flag could be bypassed when using noopener links. This could have led to security issues for websites relying on sandbox configurations that allowed popups and hosted arbitrary content. This vulnerability affects Firefox ESR < 78.1, Firefox < 79, and Thunderbird < 78.1.
nvdosvmozilla
CVE-2020-15652MEDIUMCVSS 6.5fixed in 79.0≥ 78.0, < 78.1+1 more2020-08-10
CVE-2020-15652 [MEDIUM] CWE-346 CVE-2020-15652: By observing the stack trace for JavaScript errors in web workers, it was possible to leak the resul By observing the stack trace for JavaScript errors in web workers, it was possible to leak the result of a cross-origin redirect. This applied only to content that can be parsed as script. This vulnerability affects Firefox < 79, Firefox ESR < 68.11, Firefox ESR < 78.1, Thunderbird < 68.11, and Thunderbird < 78.1.
nvdmozilla
CVE-2020-15661MEDIUMCVSS 6.5fixed in 28.02020-08-10
CVE-2020-15661 [MEDIUM] CWE-522 CVE-2020-15661: A rogue webpage could override the injected WKUserScript used by the logins autofill, this exploit c A rogue webpage could override the injected WKUserScript used by the logins autofill, this exploit could result in leaking a password for the current domain. This vulnerability affects Firefox for iOS < 28.
nvdmozilla
CVE-2020-15654MEDIUMCVSS 6.5fixed in 79.0≥ unspecified, < 792020-08-10
CVE-2020-15654 [MEDIUM] CWE-835 CVE-2020-15654: When in an endless loop, a website specifying a custom cursor using CSS could make it look like the When in an endless loop, a website specifying a custom cursor using CSS could make it look like the user is interacting with the user interface, when they are not. This could lead to a perceived broken state, especially when interactions with existing browser dialogs and warnings do not work. This vulnerability affects Firefox ESR < 78.1, Firefox < 7
nvdosvmozilla
CVE-2020-15651MEDIUMCVSS 4.3fixed in 28.02020-08-10
CVE-2020-15651 [MEDIUM] CVE-2020-15651: A unicode RTL order character in the downloaded file name can be used to change the file's name duri A unicode RTL order character in the downloaded file name can be used to change the file's name during the download UI flow to change the file extension. This vulnerability affects Firefox for iOS < 28.
nvdmozilla
CVE-2020-15648MEDIUMCVSS 6.5fixed in 78.0.2≥ unspecified, < 78.0.22020-08-10
CVE-2020-15648 [MEDIUM] CWE-1021 CVE-2020-15648: Using object or embed tags, it was possible to frame other websites, even if they disallowed framing Using object or embed tags, it was possible to frame other websites, even if they disallowed framing using the X-Frame-Options header. This vulnerability affects Thunderbird < 78 and Firefox < 78.0.2.
nvdosvmozilla
CVE-2020-15658MEDIUMCVSS 6.5fixed in 79.0≥ unspecified, < 792020-08-10
CVE-2020-15658 [MEDIUM] CWE-754 CVE-2020-15658: The code for downloading files did not properly take care of special characters, which led to an att The code for downloading files did not properly take care of special characters, which led to an attacker being able to cut off the file ending at an earlier position, leading to a different file type being downloaded than shown in the dialog. This vulnerability affects Firefox ESR < 78.1, Firefox < 79, and Thunderbird < 78.1.
nvdosvmozilla
CVE-2020-15662MEDIUMCVSS 6.5fixed in 28.02020-08-10
CVE-2020-15662 [MEDIUM] CVE-2020-15662: A rogue webpage could override the injected WKUserScript used by the download feature, this exploit A rogue webpage could override the injected WKUserScript used by the download feature, this exploit could result in the user downloading an unintended file. This vulnerability affects Firefox for iOS < 28.
nvdmozilla
CVE-2020-6463HIGHCVSS 8.82020-07-29
CVE-2020-6463 [HIGH] Mozilla Foundation Security Advisory 2020-33: CVE-2020-6463 Mozilla Foundation Security Advisory 2020-33 CVE: CVE-2020-6463 Product: Thunderbird Impact: high Fixed in: Thunderbird 78.1
osvmozilla
CVE-2020-12422HIGHCVSS 8.8fixed in 78.0≥ unspecified, < 782020-07-09
CVE-2020-12422 [HIGH] CWE-787 CVE-2020-12422: In non-standard configurations, a JPEG image created by JavaScript could have caused an internal var In non-standard configurations, a JPEG image created by JavaScript could have caused an internal variable to overflow, resulting in an out of bounds write, memory corruption, and a potentially exploitable crash. This vulnerability affects Firefox < 78.
nvdosvmozilla
CVE-2020-12406HIGHCVSS 8.8fixed in 77.0≥ unspecified, < 772020-07-09
CVE-2020-12406 [HIGH] CWE-345 CVE-2020-12406: Mozilla Developer Iain Ireland discovered a missing type check during unboxed objects removal, resul Mozilla Developer Iain Ireland discovered a missing type check during unboxed objects removal, resulting in a crash. We presume that with enough effort that it could be exploited to run arbitrary code. This vulnerability affects Thunderbird < 68.9.0, Firefox < 77, and Firefox ESR < 68.9.
nvdmozilla
CVE-2020-12416HIGHCVSS 8.8fixed in 78.0≥ unspecified, < 782020-07-09
CVE-2020-12416 [HIGH] CWE-362 CVE-2020-12416: A VideoStreamEncoder may have been freed in a race condition with VideoBroadcaster::AddOrUpdateSink, A VideoStreamEncoder may have been freed in a race condition with VideoBroadcaster::AddOrUpdateSink, resulting in a use-after-free, memory corruption, and a potentially exploitable crash. This vulnerability affects Firefox < 78.
nvdosvmozilla
CVE-2020-12420HIGHCVSS 8.8fixed in 78.0≥ unspecified, < 782020-07-09
CVE-2020-12420 [HIGH] CWE-362 CVE-2020-12420: When trying to connect to a STUN server, a race condition could have caused a use-after-free of a po When trying to connect to a STUN server, a race condition could have caused a use-after-free of a pointer, leading to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.
nvdmozilla
CVE-2020-12409HIGHCVSS 8.8fixed in 77.0≥ unspecified, < 772020-07-09
CVE-2020-12409 [HIGH] CVE-2020-12409: When using certain blank characters in a URL, they where incorrectly rendered as spaces instead of a When using certain blank characters in a URL, they where incorrectly rendered as spaces instead of an encoded URL. This vulnerability affects Firefox < 77.
nvdosvmozilla
CVE-2020-12417HIGHCVSS 8.8fixed in 78.0≥ unspecified, < 782020-07-09
CVE-2020-12417 [HIGH] CWE-617 CVE-2020-12417: Due to confusion about ValueTags on JavaScript Objects, an object may pass through the type barrier, Due to confusion about ValueTags on JavaScript Objects, an object may pass through the type barrier, resulting in memory corruption and a potentially exploitable crash. *Note: this issue only affects Firefox on ARM64 platforms.* This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.
nvdmozilla
CVE-2020-12423HIGHCVSS 7.8fixed in 78.0≥ unspecified, < 782020-07-09
CVE-2020-12423 [HIGH] CWE-427 CVE-2020-12423: When the Windows DLL "webauthn.dll" was missing from the Operating System, and a malicious one was p When the Windows DLL "webauthn.dll" was missing from the Operating System, and a malicious one was placed in a folder in the user's %PATH%, Firefox may have loaded the DLL, leading to arbitrary code execution. *Note: This issue only affects the Windows operating system; other operating systems are unaffected.* This vulnerability affects Firefox < 78.
nvdmozilla
CVE-2020-12410HIGHCVSS 8.8fixed in 76.0≥ unspecified, < 772020-07-09
CVE-2020-12410 [HIGH] CWE-787 CVE-2020-12410: Mozilla developers reported memory safety bugs present in Firefox 76 and Firefox ESR 68.8. Some of t Mozilla developers reported memory safety bugs present in Firefox 76 and Firefox ESR 68.8. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Thunderbird < 68.9.0, Firefox < 77, and Firefox ESR < 68.9.
nvdmozilla
CVE-2020-12419HIGHCVSS 8.8fixed in 78.0≥ unspecified, < 782020-07-09
CVE-2020-12419 [HIGH] CWE-416 CVE-2020-12419: When processing callbacks that occurred during window flushing in the parent process, the associated When processing callbacks that occurred during window flushing in the parent process, the associated window may die; causing a use-after-free condition. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.
nvdmozilla