Mozilla Firefox vulnerabilities
3,148 known vulnerabilities affecting mozilla/firefox.
Total CVEs
3,148
CISA KEV
17
actively exploited
Public exploits
122
Exploited in wild
22
Severity breakdown
CRITICAL862HIGH921MEDIUM1295LOW70
Vulnerabilities
Page 90 of 158
CVE-2015-7195MEDIUMCVSS 5.0≤ 41.0.22015-11-05
CVE-2015-7195 [MEDIUM] CWE-200 CVE-2015-7195: The URL parsing implementation in Mozilla Firefox before 42.0 improperly recognizes escaped characte
The URL parsing implementation in Mozilla Firefox before 42.0 improperly recognizes escaped characters in hostnames within Location headers, which allows remote attackers to obtain sensitive information via vectors involving a redirect.
nvdosv
CVE-2015-4515MEDIUMCVSS 4.3≤ 41.0.22015-11-05
CVE-2015-4515 [MEDIUM] CWE-200 CVE-2015-4515: Mozilla Firefox before 42.0, when NTLM v1 is enabled for HTTP authentication, allows remote attacker
Mozilla Firefox before 42.0, when NTLM v1 is enabled for HTTP authentication, allows remote attackers to obtain sensitive hostname information by constructing a crafted web site that sends an NTLM request and reads the Workstation field of an NTLM type 3 message.
nvdosv
CVE-2015-7186MEDIUMCVSS 4.3≤ 41.0.22015-11-05
CVE-2015-7186 [MEDIUM] CWE-200 CVE-2015-7186: Mozilla Firefox before 42.0 on Android allows user-assisted remote attackers to bypass the Same Orig
Mozilla Firefox before 42.0 on Android allows user-assisted remote attackers to bypass the Same Origin Policy and trigger (1) a download or (2) cached profile-data reading via a file: URL in a saved HTML document.
nvd
CVE-2015-7196MEDIUMCVSS 6.8≤ 41.0.2v38.0+7 more2015-11-05
CVE-2015-7196 [MEDIUM] CWE-17 CVE-2015-7196: Mozilla Firefox before 42.0 and Firefox ESR 38.x before 38.4, when a Java plugin is enabled, allow r
Mozilla Firefox before 42.0 and Firefox ESR 38.x before 38.4, when a Java plugin is enabled, allow remote attackers to cause a denial of service (incorrect garbage collection and application crash) or possibly execute arbitrary code via a crafted Java applet that deallocates an in-use JavaScript wrapper.
nvdosv
CVE-2015-7187MEDIUMCVSS 4.3≤ 41.0.22015-11-05
CVE-2015-7187 [MEDIUM] CWE-254 CVE-2015-7187: The Add-on SDK in Mozilla Firefox before 42.0 misinterprets a "script: false" panel setting, which m
The Add-on SDK in Mozilla Firefox before 42.0 misinterprets a "script: false" panel setting, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via inline JavaScript code that is executed within a third-party extension.
nvdosv
CVE-2015-7185MEDIUMCVSS 4.3≤ 41.0.22015-11-05
CVE-2015-7185 [MEDIUM] CWE-254 CVE-2015-7185: Mozilla Firefox before 42.0 on Android does not ensure that the address bar is restored upon fullscr
Mozilla Firefox before 42.0 on Android does not ensure that the address bar is restored upon fullscreen-mode exit, which allows remote attackers to spoof the address bar via crafted JavaScript code.
nvd
CVE-2015-4518MEDIUMCVSS 4.3≤ 41.0.22015-11-05
CVE-2015-4518 [MEDIUM] CWE-79 CVE-2015-4518: The Reader View implementation in Mozilla Firefox before 42.0 has an improper whitelist, which makes
The Reader View implementation in Mozilla Firefox before 42.0 has an improper whitelist, which makes it easier for remote attackers to bypass the Content Security Policy (CSP) protection mechanism and conduct cross-site scripting (XSS) attacks via vectors involving SVG animations and the about:reader URL.
nvdosv
CVE-2015-7190MEDIUMCVSS 5.0≤ 41.0.22015-11-05
CVE-2015-7190 [MEDIUM] CWE-200 CVE-2015-7190: The Search feature in Mozilla Firefox before 42.0 on Android through 4.4 supports search-engine URL
The Search feature in Mozilla Firefox before 42.0 on Android through 4.4 supports search-engine URL registration through an intent and can access this URL in a privileged context in conjunction with the crash reporter, which allows attackers to read log files and visit file: URLs of HTML documents via a crafted application.
nvd
CVE-2015-7184MEDIUMCVSS 6.8≤ 41.0.12015-10-18
CVE-2015-7184 [MEDIUM] CWE-284 CVE-2015-7184: The fetch API implementation in Mozilla Firefox before 41.0.2 does not restrict access to the HTTP r
The fetch API implementation in Mozilla Firefox before 41.0.2 does not restrict access to the HTTP response body in certain situations where user credentials are supplied but the CORS cross-origin request algorithm is improperly followed, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.
nvdosv
CVE-2015-4516CRITICALCVSS 9.3≤ 40.0.32015-09-24
CVE-2015-4516 [CRITICAL] CWE-254 CVE-2015-4516: Mozilla Firefox before 41.0 allows remote attackers to bypass certain ECMAScript 5 (aka ES5) API pro
Mozilla Firefox before 41.0 allows remote attackers to bypass certain ECMAScript 5 (aka ES5) API protection mechanisms and modify immutable properties, and consequently execute arbitrary JavaScript code with chrome privileges, via a crafted web page that does not use ES5 APIs.
nvdosv
CVE-2015-7176HIGHCVSS 7.5v38.0v38.0.1+6 more2015-09-24
CVE-2015-7176 [HIGH] CWE-119 CVE-2015-7176: The AnimationThread function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 uses an
The AnimationThread function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 uses an incorrect argument to the sscanf function, which might allow remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via unknown vectors.
nvdosv
CVE-2015-7177HIGHCVSS 7.5≤ 40.0.3v38.0+6 more2015-09-24
CVE-2015-7177 [HIGH] CWE-119 CVE-2015-7177: The InitTextures function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 might allo
The InitTextures function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 might allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors.
nvdosv
CVE-2015-7175HIGHCVSS 7.5≤ 40.0.3v38.0+6 more2015-09-24
CVE-2015-7175 [HIGH] CWE-119 CVE-2015-7175: The XULContentSinkImpl::AddText function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before
The XULContentSinkImpl::AddText function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 might allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors, related to an "overflow."
nvdosv
CVE-2015-4501HIGHCVSS 7.5≤ 40.0.32015-09-24
CVE-2015-4501 [HIGH] CWE-119 CVE-2015-4501: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41.0 allow remo
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvdosv
CVE-2015-4509HIGHCVSS 7.5v38.0v38.0.1+6 more2015-09-24
CVE-2015-4509 [HIGH] CVE-2015-4509: Use-after-free vulnerability in the HTMLVideoElement interface in Mozilla Firefox before 41.0 and Fi
Use-after-free vulnerability in the HTMLVideoElement interface in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allows remote attackers to execute arbitrary code via crafted JavaScript code that modifies the URI table of a media element, aka ZDI-CAN-3176.
nvdosv
CVE-2015-4500HIGHCVSS 7.5≤ 40.0.3v38.0+6 more2015-09-24
CVE-2015-4500 [HIGH] CWE-119 CVE-2015-4500: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41.0 and Firefo
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvdosv
CVE-2015-7174HIGHCVSS 7.5≤ 40.0.3v38.0+6 more2015-09-24
CVE-2015-7174 [HIGH] CWE-119 CVE-2015-7174: The nsAttrAndChildArray::GrowBy function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before
The nsAttrAndChildArray::GrowBy function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 might allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors, related to an "overflow."
nvdosv
CVE-2015-4522HIGHCVSS 7.5v38.0v38.0.1+6 more2015-09-24
CVE-2015-4522 [HIGH] CWE-119 CVE-2015-4522: The nsUnicodeToUTF8::GetMaxLength function in Mozilla Firefox before 41.0 and Firefox ESR 38.x befor
The nsUnicodeToUTF8::GetMaxLength function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 might allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors, related to an "overflow."
nvdosv
CVE-2015-7180HIGHCVSS 7.5≤ 40.0.3v38.0+6 more2015-09-24
CVE-2015-7180 [HIGH] CWE-119 CVE-2015-7180: The ReadbackResultWriterD3D11::Run function in Mozilla Firefox before 41.0 and Firefox ESR 38.x befo
The ReadbackResultWriterD3D11::Run function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 misinterprets the return value of a function call, which might allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors.
nvdosv
CVE-2015-4521HIGHCVSS 7.5≤ 40.0.3v38.0+6 more2015-09-24
CVE-2015-4521 [HIGH] CWE-119 CVE-2015-4521: The ConvertDialogOptions function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 mi
The ConvertDialogOptions function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 might allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors.
nvdosv