Mozilla Firefox vulnerabilities
3,233 known vulnerabilities affecting mozilla/firefox.
Total CVEs
3,233
CISA KEV
15
actively exploited
Public exploits
126
Exploited in wild
34
Severity breakdown
CRITICAL914HIGH970MEDIUM1277LOW69UNKNOWN3
Vulnerabilities
Page 52 of 162
CVE-2026-6759P3HIGHCVSS 7.5fixed in 140.10.0fixed in 150.02026-04-21
CVE-2026-6759 [HIGH] CWE-416 CVE-2026-6759: Use-after-free in the Widget: Cocoa component. This vulnerability was fixed in Firefox 150, Firefox
Use-after-free in the Widget: Cocoa component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
nvdmozilla
CVE-2018-12360P3HIGHCVSS 8.8fixed in 61.0≥ 53.0, < 60.1.0+1 more2018-10-18
CVE-2018-12360 [HIGH] CWE-416 CVE-2018-12360: A use-after-free vulnerability can occur when deleting an input element during a mutation event hand
A use-after-free vulnerability can occur when deleting an input element during a mutation event handler triggered by focusing that element. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.
nvd
CVE-2025-14327P3HIGHCVSS 7.5fixed in 146.02025-12-09
CVE-2025-14327 [HIGH] CWE-290 CVE-2025-14327: Spoofing issue in the Downloads Panel component. This vulnerability was fixed in Firefox 146, Thunde
Spoofing issue in the Downloads Panel component. This vulnerability was fixed in Firefox 146, Thunderbird 146, Firefox ESR 140.7, and Thunderbird 140.7.
nvd
CVE-2026-4684P3HIGHCVSS 7.5fixed in 115.34.0fixed in 149.0+1 more2026-03-24
CVE-2026-4684 [HIGH] CWE-362 CVE-2026-4684: Race condition, use-after-free in the Graphics: WebRender component. This vulnerability was fixed in
Race condition, use-after-free in the Graphics: WebRender component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird 149, and Thunderbird 140.9.
nvd
CVE-2026-16374P3HIGHCVSS 7.5fixed in 140.13.0fixed in 153.0.02026-07-21
CVE-2026-16374 [HIGH] CWE-200 CVE-2026-16374: Information disclosure in the Framework component in DevTools. This vulnerability was fixed in Firef
Information disclosure in the Framework component in DevTools. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
nvdmozilla
CVE-2026-16391P3HIGHCVSS 7.5fixed in 140.13.0fixed in 153.0.02026-07-21
CVE-2026-16391 [HIGH] CWE-200 CVE-2026-16391: Information disclosure in the Storage: IndexedDB component. This vulnerability was fixed in Firefox
Information disclosure in the Storage: IndexedDB component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
nvdmozilla
CVE-2026-16384P3HIGHCVSS 7.5fixed in 153.0.02026-07-21
CVE-2026-16384 [HIGH] CWE-908 CVE-2026-16384: Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerabi
Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
nvdmozilla
CVE-2026-16386P3HIGHCVSS 7.5fixed in 153.0.02026-07-21
CVE-2026-16386 [HIGH] CWE-908 CVE-2026-16386: Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerabi
Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
nvdmozilla
CVE-2026-16385P3HIGHCVSS 7.5fixed in 153.0.02026-07-21
CVE-2026-16385 [HIGH] CWE-908 CVE-2026-16385: Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerabi
Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
nvdmozilla
CVE-2026-16378P3HIGHCVSS 7.5fixed in 153.0.02026-07-21
CVE-2026-16378 [HIGH] CWE-20 CVE-2026-16378: Other issue in the DOM: Copy & Paste and Drag & Drop component. This vulnerability was fixed in Fire
Other issue in the DOM: Copy & Paste and Drag & Drop component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
nvdmozilla
CVE-2015-2726P3CRITICALCVSS 10.0≤ 38.1.02015-07-06
CVE-2015-2726 [CRITICAL] CWE-119 CVE-2015-2726: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 39.0 allow remo
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 39.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvdosv
CVE-2026-16405P3HIGHCVSS 7.5fixed in 153.0.0≥ 140.1.0, < 140.13.02026-07-21
CVE-2026-16405 [HIGH] CWE-200 CVE-2026-16405: Information disclosure in the Networking: WebSockets component. This vulnerability was fixed in Fire
Information disclosure in the Networking: WebSockets component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
nvdmozilla
CVE-2016-1974P3HIGHCVSS 8.8≤ 44.0.2v38.0+12 more2016-03-13
CVE-2016-1974 [HIGH] CWE-119 CVE-2016-1974: The nsScannerString::AppendUnicodeTo function in Mozilla Firefox before 45.0 and Firefox ESR 38.x be
The nsScannerString::AppendUnicodeTo function in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 does not verify that memory allocation succeeds, which allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via crafted Unicode data in an HTML, XML, or SVG document.
nvd
CVE-2024-4778P3CRITICALCVSS 9.8fixed in 126.0≥ unspecified, < 1262024-05-14
CVE-2024-4778 [CRITICAL] CWE-1260 CVE-2024-4778: Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption a
Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 126.
nvdosv
CVE-2016-1966P3HIGHCVSS 8.8≤ 44.0.2v38.0+12 more2016-03-13
CVE-2016-1966 [HIGH] CVE-2016-1966: The nsNPObjWrapper::GetNewOrUsed function in dom/plugins/base/nsJSNPRuntime.cpp in Mozilla Firefox b
The nsNPObjWrapper::GetNewOrUsed function in dom/plugins/base/nsJSNPRuntime.cpp in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 allows remote attackers to execute arbitrary code or cause a denial of service (invalid pointer dereference and memory corruption) via a crafted NPAPI plugin.
nvd
CVE-2015-2724P3CRITICALCVSS 10.0v31.0v31.1.0+7 more2015-07-06
CVE-2015-2724 [CRITICAL] CWE-119 CVE-2015-2724: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 39.0, Firefox E
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvdosv
CVE-2015-7202P3CRITICALCVSS 10.0≤ 42.02015-12-16
CVE-2015-7202 [CRITICAL] CWE-119 CVE-2015-7202: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 43.0 allow remo
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 43.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvdosv
CVE-2014-1554P3CRITICALCVSS 10.0≤ 31.1.0v30.0+1 more2014-09-03
CVE-2014-1554 [CRITICAL] CWE-119 CVE-2014-1554: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 32.0 allow remo
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 32.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvdosv
CVE-2014-1548P3CRITICALCVSS 10.0≤ 30.02014-07-23
CVE-2014-1548 [CRITICAL] CVE-2014-1548: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 31.0 and Thunde
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 31.0 and Thunderbird before 31.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvdosv
CVE-2020-12417P3HIGHCVSS 8.8fixed in 78.0≥ unspecified, < 782020-07-09
CVE-2020-12417 [HIGH] CWE-617 CVE-2020-12417: Due to confusion about ValueTags on JavaScript Objects, an object may pass through the type barrier,
Due to confusion about ValueTags on JavaScript Objects, an object may pass through the type barrier, resulting in memory corruption and a potentially exploitable crash. *Note: this issue only affects Firefox on ARM64 platforms.* This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.
nvd