Mozilla Firefox vulnerabilities
3,148 known vulnerabilities affecting mozilla/firefox.
Total CVEs
3,148
CISA KEV
17
actively exploited
Public exploits
122
Exploited in wild
22
Severity breakdown
CRITICAL862HIGH921MEDIUM1295LOW70
Vulnerabilities
Page 53 of 158
CVE-2020-12411HIGHCVSS 8.8fixed in 77.0≥ unspecified, < 772020-07-09
CVE-2020-12411 [HIGH] CWE-787 CVE-2020-12411: Mozilla developers reported memory safety bugs present in Firefox 76. Some of these bugs showed evid
Mozilla developers reported memory safety bugs present in Firefox 76. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 77.
nvdosvmozilla
CVE-2020-12426HIGHCVSS 8.8fixed in 78.0≥ unspecified, < 782020-07-09
CVE-2020-12426 [HIGH] CWE-787 CVE-2020-12426: Mozilla developers and community members reported memory safety bugs present in Firefox 77. Some of
Mozilla developers and community members reported memory safety bugs present in Firefox 77. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 78.
nvdosvmozilla
CVE-2018-12371HIGHCVSS 8.8fixed in 60.1.0fixed in 61.0+1 more2020-07-09
CVE-2018-12371 [HIGH] CWE-190 CVE-2018-12371: An integer overflow vulnerability in the Skia library when allocating memory for edge builders on so
An integer overflow vulnerability in the Skia library when allocating memory for edge builders on some systems with at least 16 GB of RAM. This results in the use of uninitialized memory, resulting in a potentially exploitable crash. This vulnerability affects Firefox ESR < 60.1, Thunderbird < 60, and Firefox < 61.
nvd
CVE-2020-12415MEDIUMCVSS 6.5fixed in 78.0≥ unspecified, < 782020-07-09
CVE-2020-12415 [MEDIUM] CWE-276 CVE-2020-12415: When "%2F" was present in a manifest URL, Firefox's AppCache behavior may have become confused and a
When "%2F" was present in a manifest URL, Firefox's AppCache behavior may have become confused and allowed a manifest to be served from a subdirectory. This could cause the appcache to be used to service requests for the top level directory. This vulnerability affects Firefox < 78.
nvdosvmozilla
CVE-2020-12424MEDIUMCVSS 6.5fixed in 78.0≥ unspecified, < 782020-07-09
CVE-2020-12424 [MEDIUM] CWE-276 CVE-2020-12424: When constructing a permission prompt for WebRTC, a URI was supplied from the content process. This
When constructing a permission prompt for WebRTC, a URI was supplied from the content process. This URI was untrusted, and could have been the URI of an origin that was previously granted permission; bypassing the prompt. This vulnerability affects Firefox < 78.
nvdosvmozilla
CVE-2020-12425MEDIUMCVSS 6.5fixed in 78.0≥ unspecified, < 782020-07-09
CVE-2020-12425 [MEDIUM] CWE-125 CVE-2020-12425: Due to confusion processing a hyphen character in Date.parse(), a one-byte out of bounds read could
Due to confusion processing a hyphen character in Date.parse(), a one-byte out of bounds read could have occurred, leading to potential information disclosure. This vulnerability affects Firefox < 78.
nvdosvmozilla
CVE-2020-12399MEDIUMCVSS 4.4fixed in 77.0≥ unspecified, < 772020-07-09
CVE-2020-12399 [MEDIUM] CWE-203 CVE-2020-12399: NSS has shown timing differences when performing DSA signatures, which was exploitable and could eve
NSS has shown timing differences when performing DSA signatures, which was exploitable and could eventually leak private keys. This vulnerability affects Thunderbird < 68.9.0, Firefox < 77, and Firefox ESR < 68.9.
nvdmozilla
CVE-2020-12412MEDIUMCVSS 4.3fixed in 70.0≥ unspecified, < 702020-07-09
CVE-2020-12412 [MEDIUM] CVE-2020-12412: By navigating a tab using the history API, an attacker could cause the address bar to display the in
By navigating a tab using the history API, an attacker could cause the address bar to display the incorrect domain (with the https:// scheme, a blocked port number such as '1', and without a lock icon) while controlling the page contents. This vulnerability affects Firefox < 70.
nvdosv
CVE-2020-12418MEDIUMCVSS 6.5fixed in 78.0≥ unspecified, < 782020-07-09
CVE-2020-12418 [MEDIUM] CWE-125 CVE-2020-12418: Manipulating individual parts of a URL object could have caused an out-of-bounds read, leaking proce
Manipulating individual parts of a URL object could have caused an out-of-bounds read, leaking process memory to malicious JavaScript. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.
nvdmozilla
CVE-2020-12402MEDIUMCVSS 4.4fixed in 78.0≥ unspecified, < 782020-07-09
CVE-2020-12402 [MEDIUM] CWE-203 CVE-2020-12402: During RSA key generation, bignum implementations used a variation of the Binary Extended Euclidean
During RSA key generation, bignum implementations used a variation of the Binary Extended Euclidean Algorithm which entailed significantly input-dependent flow. This allowed an attacker able to perform electromagnetic-based side channel attacks to record traces leading to the recovery of the secret primes. *Note:* An unmodified Firefox browser does n
nvdmozilla
CVE-2020-12407MEDIUMCVSS 6.5fixed in 77.0≥ unspecified, < 772020-07-09
CVE-2020-12407 [MEDIUM] CWE-125 CVE-2020-12407: Mozilla Developer Nicolas Silva found that when using WebRender, Firefox would under certain conditi
Mozilla Developer Nicolas Silva found that when using WebRender, Firefox would under certain conditions leak arbitrary GPU memory to the visible screen. The leaked memory content was visible to the user, but not observable from web content. This vulnerability affects Firefox < 77.
nvdosvmozilla
CVE-2020-12404MEDIUMCVSS 4.3fixed in 26.02020-07-09
CVE-2020-12404 [MEDIUM] CWE-79 CVE-2020-12404: For native-to-JS bridging the app requires a unique token to be passed that ensures non-app code can
For native-to-JS bridging the app requires a unique token to be passed that ensures non-app code can't call the bridging functions. That token could leak when used for downloading files. This vulnerability affects Firefox for iOS < 26.
nvdmozilla
CVE-2020-12405MEDIUMCVSS 5.3fixed in 77.0≥ unspecified, < 772020-07-09
CVE-2020-12405 [MEDIUM] CWE-362 CVE-2020-12405: When browsing a malicious page, a race condition in our SharedWorkerService could occur and lead to
When browsing a malicious page, a race condition in our SharedWorkerService could occur and lead to a potentially exploitable crash. This vulnerability affects Thunderbird < 68.9.0, Firefox < 77, and Firefox ESR < 68.9.
nvdosvmozilla
CVE-2020-12421MEDIUMCVSS 6.5fixed in 78.0≥ unspecified, < 782020-07-09
CVE-2020-12421 [MEDIUM] CWE-295 CVE-2020-12421: When performing add-on updates, certificate chains terminating in non-built-in-roots were rejected (
When performing add-on updates, certificate chains terminating in non-built-in-roots were rejected (even if they were legitimately added by an administrator.) This could have caused add-ons to become out-of-date silently without notification to the user. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.
nvdmozilla
CVE-2020-12414MEDIUMCVSS 6.5fixed in 27.02020-07-09
CVE-2020-12414 [MEDIUM] CWE-459 CVE-2020-12414: IndexedDB should be cleared when leaving private browsing mode and it is not, the API for WKWebViewC
IndexedDB should be cleared when leaving private browsing mode and it is not, the API for WKWebViewConfiguration was being used incorrectly and requires the private instance of this object be deleted when leaving private mode. This vulnerability affects Firefox for iOS < 27.
nvdmozilla
CVE-2020-12408MEDIUMCVSS 6.5fixed in 77.0≥ unspecified, < 772020-07-09
CVE-2020-12408 [MEDIUM] CVE-2020-12408: When browsing a document hosted on an IP address, an attacker could insert certain characters to fli
When browsing a document hosted on an IP address, an attacker could insert certain characters to flip domain and path information in the address bar. This vulnerability affects Firefox < 77.
nvdosvmozilla
CVE-2020-12389CRITICALCVSS 10.0fixed in 76.0≥ unspecified, < 762020-05-26
CVE-2020-12389 [CRITICAL] CWE-20 CVE-2020-12389: The Firefox content processes did not sufficiently lockdown access control which could result in a s
The Firefox content processes did not sufficiently lockdown access control which could result in a sandbox escape. *Note: this issue only affects Firefox on Windows operating systems.*. This vulnerability affects Firefox ESR < 68.8 and Firefox < 76.
nvdmozilla
CVE-2020-12390CRITICALCVSS 9.8fixed in 76.0≥ unspecified, < 762020-05-26
CVE-2020-12390 [CRITICAL] CWE-502 CVE-2020-12390: Incorrect origin serialization of URLs with IPv6 addresses could lead to incorrect security checks.
Incorrect origin serialization of URLs with IPv6 addresses could lead to incorrect security checks. This vulnerability affects Firefox < 76.
nvdosvmozilla
CVE-2020-12388CRITICALCVSS 10.0fixed in 76.0≥ unspecified, < 762020-05-26
CVE-2020-12388 [CRITICAL] CWE-20 CVE-2020-12388: The Firefox content processes did not sufficiently lockdown access control which could result in a s
The Firefox content processes did not sufficiently lockdown access control which could result in a sandbox escape. *Note: this issue only affects Firefox on Windows operating systems.*. This vulnerability affects Firefox ESR < 68.8 and Firefox < 76.
nvdmozilla
CVE-2020-6831CRITICALCVSS 9.8fixed in 76.0≥ unspecified, < 762020-05-26
CVE-2020-6831 [CRITICAL] CWE-787 CVE-2020-6831: A buffer overflow could occur when parsing and validating SCTP chunks in WebRTC. This could have led
A buffer overflow could occur when parsing and validating SCTP chunks in WebRTC. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.
nvdosvmozilla