Mozilla Firefox vulnerabilities
3,233 known vulnerabilities affecting mozilla/firefox.
Total CVEs
3,233
CISA KEV
15
actively exploited
Public exploits
126
Exploited in wild
34
Severity breakdown
CRITICAL914HIGH970MEDIUM1277LOW69UNKNOWN3
Vulnerabilities
Page 59 of 162
CVE-2026-8965P3HIGHCVSS 7.5fixed in 151.0.02026-05-19
CVE-2026-8965 [HIGH] CWE-200 CVE-2026-8965: Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 151 a
Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 151 and Thunderbird 151.
nvdmozilla
CVE-2015-2725P3CRITICALCVSS 10.0v31.0v31.1.0+7 more2015-07-06
CVE-2015-2725 [CRITICAL] CWE-119 CVE-2015-2725: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 39.0, Firefox E
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 39.0, Firefox ESR 38.x before 38.1, and Thunderbird before 38.1 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvdosv
CVE-2026-8963P3HIGHCVSS 7.5fixed in 151.0.02026-05-19
CVE-2026-8963 [HIGH] CWE-290 CVE-2026-8963: Spoofing issue in the Web Speech component. This vulnerability was fixed in Firefox 151 and Thunderb
Spoofing issue in the Web Speech component. This vulnerability was fixed in Firefox 151 and Thunderbird 151.
nvdmozilla
CVE-2026-8964P3HIGHCVSS 7.5fixed in 151.0.02026-05-19
CVE-2026-8964 [HIGH] CWE-451 CVE-2026-8964: Spoofing issue in the Popup Blocker component. This vulnerability was fixed in Firefox 151 and Thund
Spoofing issue in the Popup Blocker component. This vulnerability was fixed in Firefox 151 and Thunderbird 151.
nvdmozilla
CVE-2026-10701P3HIGHCVSS 7.5fixed in 151.0.32026-06-02
CVE-2026-10701 [HIGH] CWE-119 CVE-2026-10701: Incorrect boundary conditions in the Graphics: Text component. This vulnerability was fixed in Firef
Incorrect boundary conditions in the Graphics: Text component. This vulnerability was fixed in Firefox 151.0.3.
nvdmozilla
CVE-2006-0748P3CRITICALCVSS 9.3v1.0v1.0.1+9 more2006-04-14
CVE-2006-0748 [CRITICAL] CWE-399 CVE-2006-0748: Mozilla Firefox and Thunderbird 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.
Mozilla Firefox and Thunderbird 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0.1 allows remote attackers to execute arbitrary code via "an invalid and non-sensical ordering of table-related tags" that results in a negative array index.
nvd
CVE-2026-2783P3HIGHCVSS 7.5fixed in 140.8.0fixed in 148.02026-02-24
CVE-2026-2783 [HIGH] CWE-843 CVE-2026-2783: Information disclosure due to JIT miscompilation in the JavaScript Engine: JIT component. This vulne
Information disclosure due to JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
nvd
CVE-2024-6603P3HIGHCVSS 7.4fixed in 115.13fixed in 128.0+1 more2024-07-09
CVE-2024-6603 [HIGH] CWE-823 CVE-2024-6603: In an out-of-memory scenario an allocation could fail but free would have been called on the pointer
In an out-of-memory scenario an allocation could fail but free would have been called on the pointer afterwards leading to memory corruption. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.
nvd
CVE-2015-7201P3CRITICALCVSS 10.0≤ 42.0v38.0+8 more2015-12-16
CVE-2015-7201 [CRITICAL] CWE-119 CVE-2015-7201: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 43.0 and Firefo
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvdosv
CVE-2026-2803P3HIGHCVSS 7.5fixed in 148.02026-02-24
CVE-2026-2803 [HIGH] CWE-200 CVE-2026-2803: Information disclosure, mitigation bypass in the Settings UI component. This vulnerability was fixed
Information disclosure, mitigation bypass in the Settings UI component. This vulnerability was fixed in Firefox 148 and Thunderbird 148.
nvd
CVE-2026-16400P3HIGHCVSS 7.5fixed in 153.0.02026-07-21
CVE-2026-16400 [HIGH] CWE-200 CVE-2026-16400: Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 153 a
Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
nvdmozilla
CVE-2025-13012P3HIGHCVSS 7.5fixed in 115.30.0fixed in 145.0+1 more2025-11-11
CVE-2025-13012 [HIGH] CWE-362 CVE-2025-13012: Race condition in the Graphics component. This vulnerability was fixed in Firefox 145, Firefox ESR 1
Race condition in the Graphics component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Firefox ESR 115.30, Thunderbird 145, and Thunderbird 140.5.
nvd
CVE-2016-1977P3HIGHCVSS 8.8≤ 44.0.2v38.0+12 more2016-03-13
CVE-2016-1977 [HIGH] CWE-119 CVE-2016-1977: The Machine::Code::decoder::analysis::set_ref function in Graphite 2 before 1.3.6, as used in Mozill
The Machine::Code::decoder::analysis::set_ref function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to execute arbitrary code or cause a denial of service (stack memory corruption) via a crafted Graphite smart font.
nvd
CVE-2018-12361P3HIGHCVSS 8.8fixed in 61.0≥ unspecified, < 612018-10-18
CVE-2018-12361 [HIGH] CWE-190 CVE-2018-12361: An integer overflow can occur in the SwizzleData code while calculating buffer sizes. The overflowed
An integer overflow can occur in the SwizzleData code while calculating buffer sizes. The overflowed value is used for subsequent graphics computations when their inputs are not sanitized which results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60, Firefox ESR < 60.1, and Firefox < 61.
nvd
CVE-2014-1534P3CRITICALCVSS 10.0≤ 29.0.12014-06-11
CVE-2014-1534 [CRITICAL] CWE-119 CVE-2014-1534: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 30.0 allow remo
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 30.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvdosv
CVE-2014-1563P3CRITICALCVSS 10.0≤ 31.1.0v30.0+1 more2014-09-03
CVE-2014-1563 [CRITICAL] CWE-416 CVE-2014-1563: Use-after-free vulnerability in the mozilla::DOMSVGLength::GetTearOff function in Mozilla Firefox be
Use-after-free vulnerability in the mozilla::DOMSVGLength::GetTearOff function in Mozilla Firefox before 32.0, Firefox ESR 31.x before 31.1, and Thunderbird 31.x before 31.1 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via an SVG animation with DOM interaction that triggers incorrect cycle c
nvdosv
CVE-2009-0773P3CRITICALCVSS 10.0≤ 3.0.6v1.0+48 more2009-03-05
CVE-2009-0773 [CRITICAL] CWE-399 CVE-2009-0773: The JavaScript engine in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey 1.
The JavaScript engine in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey 1.1.15 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1) a splice of an array that contains "some non-set elements," which causes jsarray.cpp to pass an incorrect argument to the ResizeSlots functio
nvd
CVE-2011-0083P3CRITICALCVSS 10.0≤ 3.6.17v1.0+103 more2011-06-30
CVE-2011-0083 [CRITICAL] CWE-399 CVE-2011-0083: Use-after-free vulnerability in the nsSVGPathSegList::ReplaceItem function in the implementation of
Use-after-free vulnerability in the nsSVGPathSegList::ReplaceItem function in the implementation of SVG element lists in Mozilla Firefox before 3.6.18, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors involving a user-supplie
nvd
CVE-2011-2363P3CRITICALCVSS 10.0≤ 3.6.17v1.0+103 more2011-06-30
CVE-2011-2363 [CRITICAL] CWE-399 CVE-2011-2363: Use-after-free vulnerability in the nsSVGPointList::AppendElement function in the implementation of
Use-after-free vulnerability in the nsSVGPointList::AppendElement function in the implementation of SVG element lists in Mozilla Firefox before 3.6.18, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors involving a user-supplie
nvd
CVE-2014-1553P3CRITICALCVSS 10.0≤ 31.1.0v30.0+1 more2014-09-03
CVE-2014-1553 [CRITICAL] CWE-119 CVE-2014-1553: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 32.0, Firefox E
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 32.0, Firefox ESR 31.x before 31.1, and Thunderbird 31.x before 31.1 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvdosv