cbcvebase.

Mozilla Firefox vulnerabilities

3,233 known vulnerabilities affecting mozilla/firefox.

Total CVEs
3,233
CISA KEV
15
actively exploited
Public exploits
126
Exploited in wild
34
Severity breakdown
CRITICAL914HIGH970MEDIUM1277LOW69UNKNOWN3

Vulnerabilities

Page 71 of 162
CVE-2016-2806P3HIGHCVSS 8.8≤ 45.0.2v45.0.12016-04-30
CVE-2016-2806 [HIGH] CWE-119 CVE-2016-2806: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 46.0 and Firefo Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 46.0 and Firefox ESR 45.x before 45.1 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvd
CVE-2016-2807P3HIGHCVSS 8.8≤ 45.0.2v38.0+15 more2016-04-30
CVE-2016-2807 [HIGH] CWE-119 CVE-2016-2807: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 46.0, Firefox E Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 46.0, Firefox ESR 38.x before 38.8, and Firefox ESR 45.x before 45.1 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvd
CVE-2025-8036P3HIGHCVSS 8.1fixed in 140.1.0fixed in 141.02025-07-22
CVE-2025-8036 [HIGH] CWE-350 CVE-2025-8036: Thunderbird cached CORS preflight responses across IP address changes. This allowed circumventing CO Thunderbird cached CORS preflight responses across IP address changes. This allowed circumventing CORS with DNS rebinding. This vulnerability was fixed in Firefox 141, Firefox ESR 140.1, Thunderbird 141, and Thunderbird 140.1.
nvd
CVE-2025-8032P3HIGHCVSS 8.1fixed in 128.13.0fixed in 141.0+1 more2025-07-22
CVE-2025-8032 [HIGH] CWE-693 CVE-2025-8032: XSLT document loading did not correctly propagate the source document which bypassed its CSP. This v XSLT document loading did not correctly propagate the source document which bypassed its CSP. This vulnerability was fixed in Firefox 141, Firefox ESR 128.13, Firefox ESR 140.1, Thunderbird 141, Thunderbird 128.13, and Thunderbird 140.1.
nvd
CVE-2024-7523P3HIGHCVSS 8.1fixed in 129≥ unspecified, < 1292024-08-06
CVE-2024-7523 [HIGH] CWE-1021 CVE-2024-7523: A select option could partially obscure security prompts. This could be used by a malicious site to A select option could partially obscure security prompts. This could be used by a malicious site to trick a user into granting permissions. *This issue only affects Android versions of Firefox.* This vulnerability affects Firefox < 129.
nvdosv
CVE-2015-7204P3MEDIUMCVSS 6.8≤ 42.0v41.0+2 more2015-12-16
CVE-2015-7204 [MEDIUM] CWE-17 CVE-2015-7204: Mozilla Firefox before 43.0 does not properly store the properties of unboxed objects, which allows Mozilla Firefox before 43.0 does not properly store the properties of unboxed objects, which allows remote attackers to execute arbitrary code via crafted JavaScript variable assignments.
nvdosv
CVE-2009-3376P3CRITICALCVSS 9.3v3.0v3.0.1+15 more2009-10-29
CVE-2009-3376 [CRITICAL] CWE-16 CVE-2009-3376: Mozilla Firefox before 3.0.15 and 3.5.x before 3.5.4, and SeaMonkey before 2.0, does not properly ha Mozilla Firefox before 3.0.15 and 3.5.x before 3.5.4, and SeaMonkey before 2.0, does not properly handle a right-to-left override (aka RLO or U+202E) Unicode character in a download filename, which allows remote attackers to spoof file extensions via a crafted filename, as demonstrated by displaying a non-executable extension for an executable file.
nvd
CVE-2009-1832P3CRITICALCVSS 9.3≤ 3.0.10v0.1+89 more2009-06-12
CVE-2009-1832 [CRITICAL] CWE-94 CVE-2009-1832: Mozilla Firefox before 3.0.11, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 allow remote Mozilla Firefox before 3.0.11, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors involving "double frame construction."
nvd
CVE-2013-1697P3CRITICALCVSS 9.3≤ 21.0v19.0+11 more2013-06-26
CVE-2013-1697 [CRITICAL] CWE-264 CVE-2013-1697: The XrayWrapper implementation in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thund The XrayWrapper implementation in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 does not properly restrict use of DefaultValue for method calls, which allows remote attackers to execute arbitrary JavaScript code with chrome privileges via a crafted web site that trigger
nvd
CVE-2023-5724P3HIGHCVSS 7.5fixed in 119.0≥ unspecified, < 1192023-10-25
CVE-2023-5724 [HIGH] CWE-400 CVE-2023-5724: Drivers are not always robust to extremely large draw calls and in some cases this scenario could ha Drivers are not always robust to extremely large draw calls and in some cases this scenario could have led to a crash. This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.
nvd
CVE-2016-2837P3MEDIUMCVSS 6.3≤ 47.0.1v45.1.0+3 more2016-08-05
CVE-2016-2837 [MEDIUM] CWE-119 CVE-2016-2837: Heap-based buffer overflow in the ClearKey Content Decryption Module (CDM) in the Encrypted Media Ex Heap-based buffer overflow in the ClearKey Content Decryption Module (CDM) in the Encrypted Media Extensions (EME) API in Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 might allow remote attackers to execute arbitrary code by providing a malformed video and leveraging a Gecko Media Plugin (GMP) sandbox bypass.
nvd
CVE-2018-18504P3CRITICALCVSS 9.8fixed in 65.02019-02-05
CVE-2018-18504 [CRITICAL] CWE-125 CVE-2018-18504: A crash and out-of-bounds read can occur when the buffer of a texture client is freed while it is st A crash and out-of-bounds read can occur when the buffer of a texture client is freed while it is still in use during graphic operations. This results is a potentially exploitable crash and the possibility of reading from the memory of the freed buffers. This vulnerability affects Firefox < 65.
nvdosv
CVE-2019-11694P3HIGHCVSS 7.5fixed in 60.7.0fixed in 67.0+1 more2019-07-23
CVE-2019-11694 [HIGH] CWE-755 CVE-2019-11694: A vulnerability exists in the Windows sandbox where an uninitialized value in memory can be leaked t A vulnerability exists in the Windows sandbox where an uninitialized value in memory can be leaked to a renderer from a broker when making a call to access an otherwise unavailable file. This results in the potential leaking of information stored at that memory location. *Note: this issue only occurs on Windows. Other operating systems are unaffected.
nvd
CVE-2019-11710P3CRITICALCVSS 9.8fixed in 68.0≥ unspecified, < 682019-07-23
CVE-2019-11710 [CRITICAL] CWE-787 CVE-2019-11710: Mozilla developers and community members reported memory safety bugs present in Firefox 67. Some of Mozilla developers and community members reported memory safety bugs present in Firefox 67. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 68.
nvdosv
CVE-2020-12396P3CRITICALCVSS 9.8fixed in 76.0≥ unspecified, < 762020-05-26
CVE-2020-12396 [CRITICAL] CWE-787 CVE-2020-12396: Mozilla developers and community members reported memory safety bugs present in Firefox 75. Some of Mozilla developers and community members reported memory safety bugs present in Firefox 75. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 76.
nvdosv
CVE-2020-6809P3HIGHCVSS 7.5fixed in 74.0≥ unspecified, < 742020-03-25
CVE-2020-6809 [HIGH] CVE-2020-6809: When a Web Extension had the all-urls permission and made a fetch request with a mode set to 'same-o When a Web Extension had the all-urls permission and made a fetch request with a mode set to 'same-origin', it was possible for the Web Extension to read local files. This vulnerability affects Firefox < 74.
nvdosv
CVE-2009-3371P3CRITICALCVSS 10.0v3.5.1v3.5.2+2 more2009-10-29
CVE-2009-3371 [CRITICAL] CWE-399 CVE-2009-3371: Use-after-free vulnerability in Mozilla Firefox 3.5.x before 3.5.4 allows remote attackers to cause Use-after-free vulnerability in Mozilla Firefox 3.5.x before 3.5.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code by creating JavaScript web-workers recursively.
nvd
CVE-2015-4481P4LOWCVSS 3.3PoC≤ 39.0.3v38.0+3 more2015-08-16
CVE-2015-4481 [LOW] CWE-362 CVE-2015-4481: Race condition in the Mozilla Maintenance Service in Mozilla Firefox before 40.0 and Firefox ESR 38. Race condition in the Mozilla Maintenance Service in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 on Windows allows local users to write to arbitrary files and consequently gain privileges via vectors involving a hard link to a log file during an update.
nvd
CVE-2024-0743P3HIGHCVSS 7.5fixed in 122.0≥ unspecified, < 1222024-01-23
CVE-2024-0743 [HIGH] CWE-252 CVE-2024-0743: An unchecked return value in TLS handshake code could have caused a potentially exploitable crash. T An unchecked return value in TLS handshake code could have caused a potentially exploitable crash. This vulnerability affects Firefox < 122, Firefox ESR < 115.9, and Thunderbird < 115.9.
nvd
CVE-2016-2818P3HIGHCVSS 8.8v45.1.0v45.1.1+1 more2016-06-13
CVE-2016-2818 [HIGH] CWE-119 CVE-2016-2818: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 47.0 and Firefo Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvd
Mozilla Firefox vulnerabilities | cvebase