cbcvebase.

Mozilla Firefox vulnerabilities

3,233 known vulnerabilities affecting mozilla/firefox.

Total CVEs
3,233
CISA KEV
15
actively exploited
Public exploits
126
Exploited in wild
34
Severity breakdown
CRITICAL914HIGH970MEDIUM1277LOW69UNKNOWN3

Vulnerabilities

Page 86 of 162
CVE-2006-2780P3CRITICALCVSS 9.3≤ 1.5.0.32006-06-02
CVE-2006-2780 [CRITICAL] CWE-94 CVE-2006-2780: Integer overflow in Mozilla Firefox and Thunderbird before 1.5.0.4 allows remote attackers to cause Integer overflow in Mozilla Firefox and Thunderbird before 1.5.0.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via "jsstr tagify," which leads to memory corruption.
nvd
CVE-2009-3070P4CRITICALCVSS 10.0≤ 3.0.13v0.1+91 more2009-09-10
CVE-2009-3070 [CRITICAL] CVE-2009-3070: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.0.14 allow re Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.0.14 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvd
CVE-2009-3071P4CRITICALCVSS 10.0≤ 3.0.13v0.1+93 more2009-09-10
CVE-2009-3071 [CRITICAL] CVE-2009-3071: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.0.14, and 3.5 Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.0.14, and 3.5.x before 3.5.2, allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvd
CVE-2004-0757P4CRITICALCVSS 10.0≤ 0.92004-08-18
CVE-2004-0757 [CRITICAL] CVE-2004-0757: Heap-based buffer overflow in the SendUidl in the POP3 capability for Mozilla before 1.7, Firefox be Heap-based buffer overflow in the SendUidl in the POP3 capability for Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, may allow remote POP3 mail servers to execute arbitrary code.
nvd
CVE-2016-2798P3HIGHCVSS 8.8≤ 44.0.2v38.0+12 more2016-03-13
CVE-2016-2798 [HIGH] CWE-119 CVE-2016-2798: The graphite2::GlyphCache::Loader::Loader function in Graphite 2 before 1.3.6, as used in Mozilla Fi The graphite2::GlyphCache::Loader::Loader function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via a crafted Graphite smart font.
nvd
CVE-2016-2791P3HIGHCVSS 8.8≤ 44.0.2v38.0+12 more2016-03-13
CVE-2016-2791 [HIGH] CWE-119 CVE-2016-2791: The graphite2::GlyphCache::glyph function in Graphite 2 before 1.3.6, as used in Mozilla Firefox bef The graphite2::GlyphCache::glyph function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via a crafted Graphite smart font.
nvd
CVE-2016-2802P3HIGHCVSS 8.8≤ 44.0.2v38.0+12 more2016-03-13
CVE-2016-2802 [HIGH] CWE-119 CVE-2016-2802: The graphite2::TtfUtil::CmapSubtable4NextCodepoint function in Graphite 2 before 1.3.6, as used in M The graphite2::TtfUtil::CmapSubtable4NextCodepoint function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via a crafted Graphite smart font.
nvd
CVE-2025-4085P3HIGHCVSS 7.1fixed in 138.02025-04-29
CVE-2025-4085 [HIGH] CWE-269 CVE-2025-4085: An attacker with control over a content process could potentially leverage the privileged UITour act An attacker with control over a content process could potentially leverage the privileged UITour actor to leak sensitive information or escalate privileges. This vulnerability was fixed in Firefox 138 and Thunderbird 138.
nvd
CVE-2006-1790P3CRITICALCVSS 10.0v1.0.72006-04-14
CVE-2006-1790 [CRITICAL] CWE-399 CVE-2006-1790: A regression fix in Mozilla Firefox 1.0.7 allows remote attackers to cause a denial of service (cras A regression fix in Mozilla Firefox 1.0.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the InstallTrigger.install method, which leads to memory corruption.
nvd
CVE-2008-4061P3CRITICALCVSS 10.0fixed in 2.0.0.17≥ 3.0, < 3.0.22008-09-24
CVE-2008-4061 [CRITICAL] CWE-189 CVE-2008-4061: Integer overflow in the MathML component in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Th Integer overflow in the MathML component in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via an mtd element with a large integer value in the rowspan attri
nvd
CVE-2008-4062P3CRITICALCVSS 10.0fixed in 2.0.0.17≥ 3.0, < 3.0.22008-09-24
CVE-2008-4062 [CRITICAL] CWE-399 CVE-2008-4062: Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunde Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the JavaScript engine and (1) misinterpretation
nvd
CVE-2016-1971P3HIGHCVSS 8.8≤ 44.0.22016-03-13
CVE-2016-1971 [HIGH] CWE-119 CVE-2016-1971: The I420VideoFrame::CreateFrame function in the WebRTC implementation in Mozilla Firefox before 45.0 The I420VideoFrame::CreateFrame function in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows omits an unspecified status check, which might allow remote attackers to cause a denial of service (memory corruption) or possibly have other impact via unknown vectors.
nvd
CVE-2016-1969P3HIGHCVSS 8.8≤ 44.0.2v38.0+11 more2016-03-13
CVE-2016-1969 [HIGH] CWE-119 CVE-2016-1969: The setAttr function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox The setAttr function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.6.1, allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a crafted Graphite smart font.
nvd
CVE-2009-3073P3CRITICALCVSS 10.0v3.5v3.5.1+1 more2009-09-10
CVE-2009-3073 [CRITICAL] CVE-2009-3073: Unspecified vulnerability in the JavaScript engine in Mozilla Firefox 3.5.x before 3.5.3 allows remo Unspecified vulnerability in the JavaScript engine in Mozilla Firefox 3.5.x before 3.5.3 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvd
CVE-2015-0814P3HIGHCVSS 7.5v36.0.42015-04-01
CVE-2015-0814 [HIGH] CVE-2015-0814: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 37.0 allow remo Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 37.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvdosv
CVE-2015-4501P3HIGHCVSS 7.5≤ 40.0.32015-09-24
CVE-2015-4501 [HIGH] CWE-119 CVE-2015-4501: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41.0 allow remo Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvdosv
CVE-2013-1694P3HIGHCVSS 7.5≤ 21.0v19.0+11 more2013-06-26
CVE-2013-1694 [HIGH] CWE-20 CVE-2013-1694: The PreserveWrapper implementation in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, T The PreserveWrapper implementation in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 does not properly handle the lack of a wrapper, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code by leveraging unintended clea
nvd
CVE-2009-0353P3CRITICALCVSS 10.0v3.0v3.0.1+4 more2009-02-04
CVE-2009-0353 [CRITICAL] CWE-399 CVE-2009-0353: Unspecified vulnerability in Mozilla Firefox 3.x before 3.0.6, Thunderbird before 2.0.0.21, and SeaM Unspecified vulnerability in Mozilla Firefox 3.x before 3.0.6, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the JavaScript engine.
nvd
CVE-2012-5836P3HIGHCVSS 7.5fixed in 17.02012-11-21
CVE-2012-5836 [HIGH] CWE-94 CVE-2012-5836: Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allow remote attacke Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving the setting of Cascading Style Sheets (CSS) properties in conjunction with SVG text.
nvd
CVE-2018-12406P3HIGHCVSS 8.8fixed in 64.0≥ unspecified, < 642019-02-28
CVE-2018-12406 [HIGH] CWE-119 CVE-2018-12406: Mozilla developers and community members reported memory safety bugs present in Firefox 63. Some of Mozilla developers and community members reported memory safety bugs present in Firefox 63. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 64.
nvdosv
Mozilla Firefox vulnerabilities | cvebase