cbcvebase.

Mozilla Firefox vulnerabilities

3,233 known vulnerabilities affecting mozilla/firefox.

Total CVEs
3,233
CISA KEV
15
actively exploited
Public exploits
126
Exploited in wild
34
Severity breakdown
CRITICAL914HIGH970MEDIUM1277LOW69UNKNOWN3

Vulnerabilities

Page 82 of 162
CVE-2009-2662P3CRITICALCVSS 10.0≤ 3.0.12v3.0.1+9 more2009-08-04
CVE-2009-2662 [CRITICAL] CWE-119 CVE-2009-2662: The browser engine in Mozilla Firefox 3.5.x before 3.5.2 allows remote attackers to cause a denial o The browser engine in Mozilla Firefox 3.5.x before 3.5.2 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the TraceRecorder::snapshot function in js/src/jstracer.cpp, and unspecified other vectors.
nvd
CVE-2016-1972P3HIGHCVSS 8.8≤ 44.0.22016-03-13
CVE-2016-1972 [HIGH] CVE-2016-1972: Race condition in libvpx in Mozilla Firefox before 45.0 on Windows might allow remote attackers to c Race condition in libvpx in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via unknown vectors.
nvd
CVE-2009-0771P3CRITICALCVSS 10.0≤ 3.0.6v1.0+48 more2009-03-05
CVE-2009-0771 [CRITICAL] CWE-399 CVE-2009-0771: The layout engine in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey 1.1.15 The layout engine in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey 1.1.15 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain vectors that trigger memory corruption and assertion failures.
nvd
CVE-2011-2991P3CRITICALCVSS 10.0v4.0v4.0.1+1 more2011-08-18
CVE-2011-2991 [CRITICAL] CWE-119 CVE-2011-2991: The browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, Thunderbird before 6, The browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, Thunderbird before 6, and possibly other products does not properly implement JavaScript, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.
nvd
CVE-2018-12388P3HIGHCVSS 8.8fixed in 63.0≥ unspecified, < 632019-02-28
CVE-2018-12388 [HIGH] CWE-119 CVE-2018-12388: Mozilla developers and community members reported memory safety bugs present in Firefox 62. Some of Mozilla developers and community members reported memory safety bugs present in Firefox 62. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 63.
nvdosv
CVE-2011-3654P3CRITICALCVSS 10.0≤ 7.0.1v0.1+133 more2011-11-09
CVE-2011-3654 [CRITICAL] CWE-119 CVE-2011-3654: The browser engine in Mozilla Firefox before 8.0 and Thunderbird before 8.0 does not properly handle The browser engine in Mozilla Firefox before 8.0 and Thunderbird before 8.0 does not properly handle links from SVG mpath elements to non-SVG elements, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.
nvd
CVE-2019-17025P3HIGHCVSS 8.8fixed in 72.0vbefore 722020-01-08
CVE-2019-17025 [HIGH] CWE-787 CVE-2019-17025: Mozilla developers reported memory safety bugs present in Firefox 71. Some of these bugs showed evid Mozilla developers reported memory safety bugs present in Firefox 71. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 72.
nvdosv
CVE-2011-3003P3CRITICALCVSS 10.0fixed in 7.02011-09-29
CVE-2011-3003 [CRITICAL] CWE-119 CVE-2011-3003: Mozilla Firefox before 7.0 and SeaMonkey before 2.4 allow remote attackers to cause a denial of serv Mozilla Firefox before 7.0 and SeaMonkey before 2.4 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an unspecified WebGL test case that triggers a memory-allocation error and a resulting out-of-bounds write operation.
nvd
CVE-2013-0790P3CRITICALCVSS 10.0≤ 19.0.2v0.1+160 more2013-04-03
CVE-2013-0790 [CRITICAL] CVE-2013-0790: Unspecified vulnerability in the browser engine in Mozilla Firefox before 20.0 on Android allows rem Unspecified vulnerability in the browser engine in Mozilla Firefox before 20.0 on Android allows remote attackers to cause a denial of service (stack memory corruption and application crash) or possibly execute arbitrary code via unknown vectors involving a plug-in.
nvd
CVE-2012-4190P3CRITICALCVSS 10.0≤ 16.0v0.1+150 more2012-10-12
CVE-2012-4190 [CRITICAL] CWE-119 CVE-2012-4190: The FT2FontEntry::CreateFontEntry function in FreeType, as used in the Android build of Mozilla Fire The FT2FontEntry::CreateFontEntry function in FreeType, as used in the Android build of Mozilla Firefox before 16.0.1 on CyanogenMod 10, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.
nvd
CVE-2015-7176P3HIGHCVSS 7.5v38.0v38.0.1+6 more2015-09-24
CVE-2015-7176 [HIGH] CWE-119 CVE-2015-7176: The AnimationThread function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 uses an The AnimationThread function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 uses an incorrect argument to the sscanf function, which might allow remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via unknown vectors.
nvdosv
CVE-2009-1837P3HIGHCVSS 7.5≥ 3.0, < 3.0.112009-06-12
CVE-2009-1837 [HIGH] CWE-362 CVE-2009-1837: Race condition in the NPObjWrapper_NewResolve function in modules/plugin/base/src/nsJSNPRuntime.cpp Race condition in the NPObjWrapper_NewResolve function in modules/plugin/base/src/nsJSNPRuntime.cpp in xul.dll in Mozilla Firefox 3 before 3.0.11 might allow remote attackers to execute arbitrary code via a page transition during Java applet loading, related to a use-after-free vulnerability for memory associated with a destroyed Java object.
nvd
CVE-2013-0749P3CRITICALCVSS 9.3fixed in 18.0≥ 10.0, < 10.0.12+1 more2013-01-13
CVE-2013-0749 [CRITICAL] CVE-2013-0749: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 18.0, Firefox E Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.1, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.1, and SeaMonkey before 2.15 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vector
nvd
CVE-2019-11712P3HIGHCVSS 8.8fixed in 60.8.0fixed in 68.0+1 more2019-07-23
CVE-2019-11712 [HIGH] CWE-352 CVE-2019-11712: POST requests made by NPAPI plugins, such as Flash, that receive a status 308 redirect response can POST requests made by NPAPI plugins, such as Flash, that receive a status 308 redirect response can bypass CORS requirements. This can allow an attacker to perform Cross-Site Request Forgery (CSRF) attacks. This vulnerability affects Firefox ESR < 60.8, Firefox < 68, and Thunderbird < 60.8.
nvd
CVE-2015-2728P3HIGHCVSS 7.5v31.0v31.1.0+7 more2015-07-06
CVE-2015-2728 [HIGH] CVE-2015-2728: The IndexedDatabaseManager class in the IndexedDB implementation in Mozilla Firefox before 39.0 and The IndexedDatabaseManager class in the IndexedDB implementation in Mozilla Firefox before 39.0 and Firefox ESR 31.x before 31.8 and 38.x before 38.1 misinterprets an unspecified IDBDatabase field as a pointer, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors, r
nvdosv
CVE-2015-7194P3HIGHCVSS 7.5≤ 41.0.2v38.0+7 more2015-11-05
CVE-2015-7194 [HIGH] CWE-119 CVE-2015-7194: Buffer underflow in libjar in Mozilla Firefox before 42.0 and Firefox ESR 38.x before 38.4 allows re Buffer underflow in libjar in Mozilla Firefox before 42.0 and Firefox ESR 38.x before 38.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted ZIP archive.
nvdosv
CVE-2017-7807P3HIGHCVSS 8.1fixed in 55.0fixed in 52.3.0+1 more2018-06-11
CVE-2017-7807 [HIGH] CWE-20 CVE-2017-7807: A mechanism that uses AppCache to hijack a URL in a domain using fallback by serving the files from A mechanism that uses AppCache to hijack a URL in a domain using fallback by serving the files from a sub-path on the domain. This has been addressed by requiring fallback files be inside the manifest directory. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55.
nvd
CVE-2016-9896P3HIGHCVSS 8.1fixed in 50.1.0≥ unspecified, < 50.12018-06-11
CVE-2016-9896 [HIGH] CWE-416 CVE-2016-9896: Use-after-free while manipulating the "navigator" object within WebVR. Note: WebVR is not currently Use-after-free while manipulating the "navigator" object within WebVR. Note: WebVR is not currently enabled by default. This vulnerability affects Firefox < 50.1.
nvdosv
CVE-2017-7813P3HIGHCVSS 8.2≤ 55.0.3≥ unspecified, < 562018-06-11
CVE-2017-7813 [HIGH] CWE-125 CVE-2017-7813: Inside the JavaScript parser, a cast of an integer to a narrower type can result in data read from o Inside the JavaScript parser, a cast of an integer to a narrower type can result in data read from outside the buffer being parsed. This usually results in a non-exploitable crash, but can leak a limited amount of information from memory if it matches JavaScript identifier syntax. This vulnerability affects Firefox < 56.
nvdosv
CVE-2015-4506P3MEDIUMCVSS 6.8≤ 40.0.3v38.0+6 more2015-09-24
CVE-2015-4506 [MEDIUM] CWE-119 CVE-2015-4506: Buffer overflow in the vp9_init_context_buffers function in libvpx, as used in Mozilla Firefox befor Buffer overflow in the vp9_init_context_buffers function in libvpx, as used in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3, allows remote attackers to execute arbitrary code via a crafted VP9 file.
nvd