cbcvebase.

Mozilla Firefox Esr vulnerabilities

886 known vulnerabilities affecting mozilla/firefox_esr.

Total CVEs
886
CISA KEV
9
actively exploited
Public exploits
20
Exploited in wild
16
Severity breakdown
CRITICAL199HIGH344MEDIUM292LOW6UNKNOWN45

Vulnerabilities

Page 1 of 45
CVE-2016-9079P1HIGHCVSS 7.5KEVPoC≥ unspecified, < 45.5.12018-06-11
CVE-2016-9079 [HIGH] CWE-416 CVE-2016-9079: A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulner A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulnerability has been discovered in the wild targeting Firefox and Tor Browser users on Windows. This vulnerability affects Firefox < 50.0.2, Firefox ESR < 45.5.1, and Thunderbird < 45.5.1.
nvd
CVE-2019-11708P1CRITICALCVSS 10.0KEVPoC≥ unspecified, < 60.7.22019-07-23
CVE-2019-11708 [CRITICAL] CWE-20 CVE-2019-11708: Insufficient vetting of parameters passed with the Prompt:Open IPC message between child and parent Insufficient vetting of parameters passed with the Prompt:Open IPC message between child and parent processes can result in the non-sandboxed parent process opening web content chosen by a compromised child process. When combined with additional vulnerabilities this could result in executing arbitrary code on the user's computer. This vulnerability
nvd
CVE-2019-17026P1HIGHCVSS 8.8KEVPoC≥ unspecified, < 68.4.12020-03-02
CVE-2019-17026 [HIGH] CWE-843 CVE-2019-17026: Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a typ Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a type confusion. We are aware of targeted attacks in the wild abusing this flaw. This vulnerability affects Firefox ESR < 68.4.1, Thunderbird < 68.4.1, and Firefox < 72.0.1.
nvd
CVE-2019-11707P1HIGHCVSS 8.8KEVPoC≥ unspecified, < 60.7.12019-07-23
CVE-2019-11707 [HIGH] CWE-843 CVE-2019-11707: A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This can allow for an exploitable crash. We are aware of targeted attacks in the wild abusing this flaw. This vulnerability affects Firefox ESR < 60.7.1, Firefox < 67.0.3, and Thunderbird < 60.7.2.
nvd
CVE-2022-26485P1HIGHCVSS 8.8KEVPoC≥ unspecified, < 91.6.12022-12-22
CVE-2022-26485 [HIGH] CWE-416 CVE-2022-26485: Removing an XSLT parameter during processing could have lead to an exploitable use-after-free. We ha Removing an XSLT parameter during processing could have lead to an exploitable use-after-free. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.6.1, Firefox for Android < 97.3.0, Thunderbird < 91.6.2, and Focus < 97.3.0.
nvd
CVE-2024-9680P1CRITICALCVSS 9.8KEVRansomware≥ unspecified, < 128.3.1≥ unspecified, < 115.16.12024-10-09
CVE-2024-9680 [CRITICAL] CWE-416 CVE-2024-9680: An attacker was able to achieve code execution in the content process by exploiting a use-after-free An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animation timelines. We have had reports of this vulnerability being exploited in the wild. This vulnerability affects Firefox < 131.0.2, Firefox ESR < 128.3.1, Firefox ESR < 115.16.1, Thunderbird < 131.0.1, Thunderbird < 128.3.1, and Thunderbird
nvd
CVE-2022-26486P1CRITICALCVSS 9.6KEV≥ unspecified, < 91.6.12022-12-22
CVE-2022-26486 [CRITICAL] CWE-416 CVE-2022-26486: An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable san An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable sandbox escape. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.6.1, Firefox for Android < 97.3.0, Thunderbird < 91.6.2, and Focus < 97.3.0.
nvd
CVE-2020-6820P1HIGHCVSS 8.1KEV≥ unspecified, < 68.6.12020-04-24
CVE-2020-6820 [HIGH] CWE-362 CVE-2020-6820: Under certain conditions, when handling a ReadableStream, a race condition can cause a use-after-fre Under certain conditions, when handling a ReadableStream, a race condition can cause a use-after-free. We are aware of targeted attacks in the wild abusing this flaw. This vulnerability affects Thunderbird < 68.7.0, Firefox < 74.0.1, and Firefox ESR < 68.6.1.
nvd
CVE-2020-6819P1HIGHCVSS 8.1KEV≥ unspecified, < 68.6.12020-04-24
CVE-2020-6819 [HIGH] CWE-362 CVE-2020-6819: Under certain conditions, when running the nsDocShell destructor, a race condition can cause a use-a Under certain conditions, when running the nsDocShell destructor, a race condition can cause a use-after-free. We are aware of targeted attacks in the wild abusing this flaw. This vulnerability affects Thunderbird < 68.7.0, Firefox < 74.0.1, and Firefox ESR < 68.6.1.
nvd
CVE-2019-9810P1HIGHCVSS 8.8ExploitedPoC≥ unspecified, < 60.6.12019-04-26
CVE-2019-9810 [HIGH] CWE-119 CVE-2019-9810: Incorrect alias information in IonMonkey JIT compiler for Array.prototype.slice method may lead to m Incorrect alias information in IonMonkey JIT compiler for Array.prototype.slice method may lead to missing bounds check and a buffer overflow. This vulnerability affects Firefox < 66.0.1, Firefox ESR < 60.6.1, and Thunderbird < 60.6.1.
nvd
CVE-2022-1802P1HIGHCVSS 8.8ExploitedPoCfixed in 91.9.1≥ unspecified, < 91.9.12022-12-22
CVE-2022-1802 [HIGH] CWE-1321 CVE-2022-1802: If an attacker was able to corrupt the methods of an Array object in JavaScript via prototype pollut If an attacker was able to corrupt the methods of an Array object in JavaScript via prototype pollution, they could have achieved execution of attacker-controlled JavaScript code in a privileged context. This vulnerability affects Firefox ESR < 91.9.1, Firefox < 100.0.2, Firefox for Android < 100.3.0, and Thunderbird < 91.9.1.
nvd
CVE-2022-28281P2HIGHCVSS 8.8ExploitedPoCfixed in 91.8≥ unspecified, < 91.82022-12-22
CVE-2022-28281 [HIGH] CWE-787 CVE-2022-28281: If a compromised content process sent an unexpected number of WebAuthN Extensions in a Register comm If a compromised content process sent an unexpected number of WebAuthN Extensions in a Register command to the parent process, an out of bounds write would have occurred leading to memory corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 91.8, Firefox < 99, and Firefox ESR < 91.8.
nvd
CVE-2022-1529P2HIGHCVSS 8.8Exploitedfixed in 91.9.1≥ unspecified, < 91.9.12022-12-22
CVE-2022-1529 [HIGH] CWE-1321 CVE-2022-1529: An attacker could have sent a message to the parent process where the contents were used to double-i An attacker could have sent a message to the parent process where the contents were used to double-index into a JavaScript object, leading to prototype pollution and ultimately attacker-controlled JavaScript executing in the privileged parent process. This vulnerability affects Firefox ESR < 91.9.1, Firefox < 100.0.2, Firefox for Android < 100.3.0, and
nvd
CVE-2020-15654P2MEDIUMCVSS 6.5Exploitedfixed in 78.1≥ unspecified, < 78.12020-08-10
CVE-2020-15654 [MEDIUM] CWE-835 CVE-2020-15654: When in an endless loop, a website specifying a custom cursor using CSS could make it look like the When in an endless loop, a website specifying a custom cursor using CSS could make it look like the user is interacting with the user interface, when they are not. This could lead to a perceived broken state, especially when interactions with existing browser dialogs and warnings do not work. This vulnerability affects Firefox ESR < 78.1, Firefox < 7
nvd
CVE-2022-34478P2MEDIUMCVSS 6.5Exploitedfixed in 91.11≥ unspecified, < 91.112022-12-22
CVE-2022-34478 [MEDIUM] CWE-601 CVE-2022-34478: The <code>ms-msdt</code>, <code>search</code>, and <code>search-ms</code> protocols deliver content The ms-msdt, search, and search-ms protocols deliver content to Microsoft applications, bypassing the browser, when a user accepts a prompt. These applications have had known vulnerabilities, exploited in the wild (although we know of none exploited through Thunderbird), so in this release Thunderbird has blocked these protocols from prompting the us
nvd
CVE-2022-1097P2MEDIUMCVSS 6.5Exploitedfixed in 91.8≥ unspecified, < 91.82022-12-22
CVE-2022-1097 [MEDIUM] CWE-416 CVE-2022-1097: <code>NSSToken</code> objects were referenced via direct points, and could have been accessed in an NSSToken objects were referenced via direct points, and could have been accessed in an unsafe way on different threads, leading to a use-after-free and potentially exploitable crash. This vulnerability affects Thunderbird < 91.8, Firefox < 99, and Firefox ESR < 91.8.
nvd
CVE-2020-26950P2HIGHCVSS 8.8PoCfixed in 78.4.12020-12-09
CVE-2020-26950 [HIGH] CWE-416 CVE-2020-26950: In certain circumstances, the MCallGetProperty opcode can be emitted with unmet assumptions resultin In certain circumstances, the MCallGetProperty opcode can be emitted with unmet assumptions resulting in an exploitable use-after-free condition. This vulnerability affects Firefox < 82.0.3, Firefox ESR < 78.4.1, and Thunderbird < 78.4.2.
nvd
CVE-2017-5375P2CRITICALCVSS 9.8PoC≥ unspecified, < 45.72018-06-11
CVE-2017-5375 [CRITICAL] CWE-119 CVE-2017-5375: JIT code allocation can allow for a bypass of ASLR and DEP protections leading to potential memory c JIT code allocation can allow for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.
nvd
CVE-2019-9791P2CRITICALCVSS 9.8PoC≥ unspecified, < 60.62019-04-26
CVE-2019-9791 [CRITICAL] CWE-843 CVE-2019-9791: The type inference system allows the compilation of functions that can cause type confusions between The type inference system allows the compilation of functions that can cause type confusions between arbitrary objects when compiled through the IonMonkey just-in-time (JIT) compiler and when the constructor function is entered through on-stack replacement (OSR). This allows for possible arbitrary reading and writing of objects during an exploitable
nvd
CVE-2016-9899P2CRITICALCVSS 9.8PoC≥ unspecified, < 45.62018-06-11
CVE-2016-9899 [CRITICAL] CWE-416 CVE-2016-9899: Use-after-free while manipulating DOM events and removing audio elements due to errors in the handli Use-after-free while manipulating DOM events and removing audio elements due to errors in the handling of node adoption. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.
nvd
1 / 45Next →
Mozilla Firefox Esr vulnerabilities | cvebase