Mozilla Firefox vulnerabilities
3,233 known vulnerabilities affecting mozilla/firefox.
Total CVEs
3,233
CISA KEV
15
actively exploited
Public exploits
126
Exploited in wild
34
Severity breakdown
CRITICAL914HIGH970MEDIUM1277LOW69UNKNOWN3
Vulnerabilities
Page 57 of 162
CVE-2017-7779P3CRITICALCVSS 9.8fixed in 55.0fixed in 52.3.0+1 more2018-06-11
CVE-2017-7779 [CRITICAL] CWE-119 CVE-2017-7779: Memory safety bugs were reported in Firefox 54, Firefox ESR 52.2, and Thunderbird 52.2. Some of thes
Memory safety bugs were reported in Firefox 54, Firefox ESR 52.2, and Thunderbird 52.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55.
nvd
CVE-2007-3844P4MEDIUMCVSS 4.3PoCv2.0.0.52007-08-08
CVE-2007-3844 [MEDIUM] CVE-2007-3844: Mozilla Firefox 2.0.0.5, Thunderbird 2.0.0.5 and before 1.5.0.13, and SeaMonkey 1.1.3 allows remote
Mozilla Firefox 2.0.0.5, Thunderbird 2.0.0.5 and before 1.5.0.13, and SeaMonkey 1.1.3 allows remote attackers to conduct cross-site scripting (XSS) attacks with chrome privileges via an addon that inserts a (1) javascript: or (2) data: link into an about:blank document loaded by chrome via (a) the window.open function or (b) a content.location assignment, aka
nvd
CVE-2017-7801P3CRITICALCVSS 9.8fixed in 55.0fixed in 52.3.0+1 more2018-06-11
CVE-2017-7801 [CRITICAL] CWE-416 CVE-2017-7801: A use-after-free vulnerability can occur while re-computing layout for a "marquee" element during wi
A use-after-free vulnerability can occur while re-computing layout for a "marquee" element during window resizing where the updated style object is freed while still in use. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55.
nvd
CVE-2014-1540P3CRITICALCVSS 9.3≤ 29.0.12014-06-11
CVE-2014-1540 [CRITICAL] CVE-2014-1540: Use-after-free vulnerability in the nsEventListenerManager::CompileEventHandlerInternal function in
Use-after-free vulnerability in the nsEventListenerManager::CompileEventHandlerInternal function in the Event Listener Manager in Mozilla Firefox before 30.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via crafted web content.
nvdosv
CVE-2014-1508P3CRITICALCVSS 9.1fixed in 28.0≥ 24.0, < 24.42014-03-19
CVE-2014-1508 [CRITICAL] CWE-125 CVE-2014-1508: The libxul.so!gfxContext::Polygon function in Mozilla Firefox before 28.0, Firefox ESR 24.x before 2
The libxul.so!gfxContext::Polygon function in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to obtain sensitive information from process memory, cause a denial of service (out-of-bounds read and application crash), or possibly bypass the Same Origin Policy via ve
nvd
CVE-2015-2736P3CRITICALCVSS 9.3≤ 38.1.0v31.0+7 more2015-07-06
CVE-2015-2736 [CRITICAL] CWE-17 CVE-2015-2736: The nsZipArchive::BuildFileList function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.
The nsZipArchive::BuildFileList function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses unintended memory locations, which allows remote attackers to have an unspecified impact via a crafted ZIP archive.
nvdosv
CVE-2018-5147P3CRITICALCVSS 9.8fixed in 52.7.2fixed in 59.0.12018-06-11
CVE-2018-5147 [CRITICAL] CVE-2018-5147: The libtremor library has the same flaw as CVE-2018-5146. This library is used by Firefox in place o
The libtremor library has the same flaw as CVE-2018-5146. This library is used by Firefox in place of libvorbis on Android and ARM platforms. This vulnerability affects Firefox ESR < 52.7.2 and Firefox < 59.0.1.
nvd
CVE-2024-7525P3HIGHCVSS 8.1fixed in 129.0≥ unspecified, < 1292024-08-06
CVE-2024-7525 [HIGH] CWE-276 CVE-2024-7525: It was possible for a web extension with minimal permissions to create a `StreamFilter` which could
It was possible for a web extension with minimal permissions to create a `StreamFilter` which could be used to read and modify the response body of requests on any site. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1, and Thunderbird < 115.14.
nvd
CVE-2017-7793P3CRITICALCVSS 9.8fixed in 56.0fixed in 52.4.0+1 more2018-06-11
CVE-2017-7793 [CRITICAL] CWE-416 CVE-2017-7793: A use-after-free vulnerability can occur in the Fetch API when the worker or the associated window a
A use-after-free vulnerability can occur in the Fetch API when the worker or the associated window are freed when still in use, resulting in a potentially exploitable crash. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4.
nvdosv
CVE-2016-2804P3HIGHCVSS 8.8≤ 45.0.2v38.0+15 more2016-04-30
CVE-2016-2804 [HIGH] CWE-119 CVE-2016-2804: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 46.0 allow remo
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 46.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvdosv
CVE-2024-11700P3HIGHCVSS 8.1fixed in 133.0≥ unspecified, < 1332024-11-26
CVE-2024-11700 [HIGH] CWE-1021 CVE-2024-11700: Malicious websites may have been able to perform user intent confirmation through tapjacking. This c
Malicious websites may have been able to perform user intent confirmation through tapjacking. This could have led to users unknowingly approving the launch of external applications, potentially exposing them to underlying vulnerabilities. This vulnerability affects Firefox < 133 and Thunderbird < 133.
nvd
CVE-2024-3865P3HIGHCVSS 8.1fixed in 125.0≥ unspecified, < 1252024-04-16
CVE-2024-3865 [HIGH] CWE-119 CVE-2024-3865: Memory safety bugs present in Firefox 124. Some of these bugs showed evidence of memory corruption a
Memory safety bugs present in Firefox 124. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 125.
nvdosv
CVE-2016-2805P3HIGHCVSS 8.8v38.0v38.0.1+13 more2016-04-30
CVE-2016-2805 [HIGH] CWE-119 CVE-2016-2805: Unspecified vulnerability in the browser engine in Mozilla Firefox ESR 38.x before 38.8 allows remot
Unspecified vulnerability in the browser engine in Mozilla Firefox ESR 38.x before 38.8 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvd
CVE-2018-5174P3HIGHCVSS 7.5fixed in 52.8.0fixed in 60.0+1 more2018-06-11
CVE-2018-5174 [HIGH] CVE-2018-5174: In the Windows 10 April 2018 Update, Windows Defender SmartScreen honors the "SEE_MASK_FLAG_NO_UI" f
In the Windows 10 April 2018 Update, Windows Defender SmartScreen honors the "SEE_MASK_FLAG_NO_UI" flag associated with downloaded files and will not show any UI. Files that are unknown and potentially dangerous will be allowed to run because SmartScreen will not prompt the user for a decision, and if the user is offline all files will be allowed to be opened b
nvd
CVE-2024-4765P3HIGHCVSS 8.1fixed in 126.0≥ unspecified, < 1262024-05-14
CVE-2024-4765 [HIGH] CWE-327 CVE-2024-4765: Web application manifests were stored by using an insecure MD5 hash which allowed for a hash collisi
Web application manifests were stored by using an insecure MD5 hash which allowed for a hash collision to overwrite another application's manifest. This could have been exploited to run arbitrary code in another application's context.
*This issue only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affects Fire
nvd
CVE-2025-11720P3HIGHCVSS 8.1fixed in 144.02025-10-14
CVE-2025-11720 [HIGH] CWE-451 CVE-2025-11720: The Firefox and Firefox Focus UI for the Android custom tab feature only showed the "site" that was
The Firefox and Firefox Focus UI for the Android custom tab feature only showed the "site" that was loaded, not the full hostname. User supplied content hosted on a subdomain of a site could have been used to fool a user into thinking it was content from a different subdomain of that site. This vulnerability was fixed in Firefox 144.
nvd
CVE-2025-9180P3HIGHCVSS 8.1fixed in 115.27.0fixed in 142.0+2 more2025-08-19
CVE-2025-9180 [HIGH] CWE-346 CVE-2025-9180: Same-origin policy bypass in the Graphics: Canvas2D component. This vulnerability was fixed in Firef
Same-origin policy bypass in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 142, Firefox ESR 115.27, Firefox ESR 128.14, Firefox ESR 140.2, Thunderbird 142, Thunderbird 128.14, and Thunderbird 140.2.
nvd
CVE-2018-5137P3HIGHCVSS 7.5fixed in 59.0≥ unspecified, < 592018-06-11
CVE-2018-5137 [HIGH] CWE-200 CVE-2018-5137: A legacy extension's non-contentaccessible, defined resources can be loaded by an arbitrary web page
A legacy extension's non-contentaccessible, defined resources can be loaded by an arbitrary web page through script. This script does this by using a maliciously crafted path string to reference the resources. Note: this vulnerability does not affect WebExtensions. This vulnerability affects Firefox < 59.
nvdosv
CVE-2020-6814P3CRITICALCVSS 9.8fixed in 74.0≥ unspecified, < 74+1 more2020-03-25
CVE-2020-6814 [CRITICAL] CWE-787 CVE-2020-6814: Mozilla developers reported memory safety bugs present in Firefox and Thunderbird 68.5. Some of thes
Mozilla developers reported memory safety bugs present in Firefox and Thunderbird 68.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Thunderbird < 68.6, Firefox < 74, Firefox < ESR68.6, and Firefox ESR < 68.6.
nvd
CVE-2017-5377P3CRITICALCVSS 9.8fixed in 51.0≥ unspecified, < 512018-06-11
CVE-2017-5377 [CRITICAL] CWE-119 CVE-2017-5377: A memory corruption vulnerability in Skia that can occur when using transforms to make gradients, re
A memory corruption vulnerability in Skia that can occur when using transforms to make gradients, resulting in a potentially exploitable crash. This vulnerability affects Firefox < 51.
nvdosv