Mozilla Firefox Esr vulnerabilities
886 known vulnerabilities affecting mozilla/firefox_esr.
Total CVEs
886
CISA KEV
9
actively exploited
Public exploits
20
Exploited in wild
16
Severity breakdown
CRITICAL199HIGH344MEDIUM292LOW6UNKNOWN45
Vulnerabilities
Page 26 of 45
CVE-2026-8962P3UNKNOWNfixed in Firefox ESR 140.11
CVE-2026-8962 Mozilla Foundation Security Advisory 2026-48: CVE-2026-8962
Mozilla Foundation Security Advisory 2026-48
CVE: CVE-2026-8962
Product: Firefox ESR
Impact: high
Fixed in: Firefox ESR 140.11
mozilla
CVE-2026-16354P3UNKNOWNfixed in Firefox ESR 140.13
CVE-2026-16354 Mozilla Foundation Security Advisory 2026-70: CVE-2026-16354
Mozilla Foundation Security Advisory 2026-70
CVE: CVE-2026-16354
Product: Firefox ESR
Impact: high
Fixed in: Firefox ESR 140.13
mozilla
CVE-2026-7320P3UNKNOWNfixed in Firefox ESR 115.35.1
CVE-2026-7320 Mozilla Foundation Security Advisory 2026-37: CVE-2026-7320
Mozilla Foundation Security Advisory 2026-37
CVE: CVE-2026-7320
Product: Firefox ESR
Impact: critical
Fixed in: Firefox ESR 115.35.1
mozilla
CVE-2026-16391P3UNKNOWNfixed in Firefox ESR 140.13
CVE-2026-16391 Mozilla Foundation Security Advisory 2026-70: CVE-2026-16391
Mozilla Foundation Security Advisory 2026-70
CVE: CVE-2026-16391
Product: Firefox ESR
Impact: high
Fixed in: Firefox ESR 140.13
mozilla
CVE-2026-16374P3UNKNOWNfixed in Firefox ESR 140.13
CVE-2026-16374 Mozilla Foundation Security Advisory 2026-70: CVE-2026-16374
Mozilla Foundation Security Advisory 2026-70
CVE: CVE-2026-16374
Product: Firefox ESR
Impact: high
Fixed in: Firefox ESR 140.13
mozilla
CVE-2020-6796P3HIGHCVSS 8.8fixed in 68.5.02020-03-02
CVE-2020-6796 [HIGH] CWE-787 CVE-2020-6796: A content process could have modified shared memory relating to crash reporting information, crash i
A content process could have modified shared memory relating to crash reporting information, crash itself, and cause an out-of-bound write. This could have caused memory corruption and a potentially exploitable crash. This vulnerability affects Firefox < 73 and Firefox < ESR68.5.
nvd
CVE-2021-38504P3HIGHCVSS 8.8fixed in 91.3.0≥ unspecified, < 91.32021-12-08
CVE-2021-38504 [HIGH] CWE-416 CVE-2021-38504: When interacting with an HTML input element's file picker dialog with webkitdirectory set, a use-aft
When interacting with an HTML input element's file picker dialog with webkitdirectory set, a use-after-free could have resulted, leading to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox < 94, Thunderbird < 91.3, and Firefox ESR < 91.3.
nvd
CVE-2019-11760P3HIGHCVSS 8.8fixed in 68.2vbefore 68.22020-01-08
CVE-2019-11760 [HIGH] CWE-787 CVE-2019-11760: A fixed-size stack buffer could overflow in nrappkit when doing WebRTC signaling. This resulted in a
A fixed-size stack buffer could overflow in nrappkit when doing WebRTC signaling. This resulted in a potentially exploitable crash in some instances. This vulnerability affects Firefox < 70, Thunderbird < 68.2, and Firefox ESR < 68.2.
nvd
CVE-2017-5031P3HIGHCVSS 8.8≥ unspecified, < 52.1.12017-04-24
CVE-2017-5031 [HIGH] CWE-416 CVE-2017-5031: A use after free in ANGLE in Google Chrome prior to 57.0.2987.98 for Windows allowed a remote attack
A use after free in ANGLE in Google Chrome prior to 57.0.2987.98 for Windows allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
nvd
CVE-2019-11735P3HIGHCVSS 8.8fixed in 68.1.0≥ unspecified, < 68.12019-09-27
CVE-2019-11735 [HIGH] CWE-787 CVE-2019-11735: Mozilla developers and community members reported memory safety bugs present in Firefox 68 and Firef
Mozilla developers and community members reported memory safety bugs present in Firefox 68 and Firefox ESR 68. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 69 and Firefox ESR < 68.1.
nvd
CVE-2021-29946P3HIGHCVSS 8.8fixed in 78.10≥ unspecified, < 78.102021-06-24
CVE-2021-29946 [HIGH] CWE-190 CVE-2021-29946: Ports that were written as an integer overflow above the bounds of a 16-bit integer could have bypas
Ports that were written as an integer overflow above the bounds of a 16-bit integer could have bypassed port blocking restrictions when used in the Alt-Svc header. This vulnerability affects Firefox ESR < 78.10, Thunderbird < 78.10, and Firefox < 88.
nvd
CVE-2016-5297P3CRITICALCVSS 9.8≥ unspecified, < 45.52018-06-11
CVE-2016-5297 [CRITICAL] CWE-190 CVE-2016-5297: An error in argument length checking in JavaScript, leading to potential integer overflows or other
An error in argument length checking in JavaScript, leading to potential integer overflows or other bounds checking issues. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.
nvd
CVE-2017-5378P3HIGHCVSS 7.5≥ unspecified, < 45.72018-06-11
CVE-2017-5378 [HIGH] CWE-200 CVE-2017-5378: Hashed codes of JavaScript objects are shared between pages. This allows for pointer leaks because a
Hashed codes of JavaScript objects are shared between pages. This allows for pointer leaks because an object's address can be discovered through hash codes, and also allows for data leakage of an object's content using these hash codes. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.
nvd
CVE-2015-0801P3HIGHCVSS 7.5v31.1v31.2+3 more2015-04-01
CVE-2015-0801 [HIGH] CWE-264 CVE-2015-0801: Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 allow remote
Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 allow remote attackers to bypass the Same Origin Policy and execute arbitrary JavaScript code with chrome privileges via vectors involving anchor navigation, a similar issue to CVE-2015-0818.
nvd
CVE-2019-9818P3HIGHCVSS 8.3fixed in 60.7≥ unspecified, < 60.72019-07-23
CVE-2019-9818 [HIGH] CWE-362 CVE-2019-9818: A race condition is present in the crash generation server used to generate data for the crash repor
A race condition is present in the crash generation server used to generate data for the crash reporter. This issue can lead to a use-after-free in the main process, resulting in a potentially exploitable crash and a sandbox escape. *Note: this vulnerability only affects Windows. Other operating systems are unaffected.*. This vulnerability affects Thund
nvd
CVE-2017-7757P3CRITICALCVSS 9.8≥ unspecified, < 52.22018-06-11
CVE-2017-7757 [CRITICAL] CWE-416 CVE-2017-7757: A use-after-free vulnerability in IndexedDB when one of its objects is destroyed in memory while a m
A use-after-free vulnerability in IndexedDB when one of its objects is destroyed in memory while a method on it is still being executed. This results in a potentially exploitable crash. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.
nvd
CVE-2017-5470P3CRITICALCVSS 9.8≥ unspecified, < 52.22018-06-11
CVE-2017-5470 [CRITICAL] CWE-119 CVE-2017-5470: Memory safety bugs were reported in Firefox 53 and Firefox ESR 52.1. Some of these bugs showed evide
Memory safety bugs were reported in Firefox 53 and Firefox ESR 52.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.
nvd
CVE-2019-11719P3HIGHCVSS 7.5≥ unspecified, < 60.82019-07-23
CVE-2019-11719 [HIGH] CWE-125 CVE-2019-11719: When importing a curve25519 private key in PKCS#8format with leading 0x00 bytes, it is possible to t
When importing a curve25519 private key in PKCS#8format with leading 0x00 bytes, it is possible to trigger an out-of-bounds read in the Network Security Services (NSS) library. This could lead to information disclosure. This vulnerability affects Firefox ESR < 60.8, Firefox < 68, and Thunderbird < 60.8.
nvd
CVE-2023-5724P3HIGHCVSS 7.5fixed in 115.4≥ unspecified, < 115.42023-10-25
CVE-2023-5724 [HIGH] CWE-400 CVE-2023-5724: Drivers are not always robust to extremely large draw calls and in some cases this scenario could ha
Drivers are not always robust to extremely large draw calls and in some cases this scenario could have led to a crash. This vulnerability affects Firefox < 119, Firefox ESR < 115.4, and Thunderbird < 115.4.1.
nvd
CVE-2019-11694P3HIGHCVSS 7.5≥ unspecified, < 60.72019-07-23
CVE-2019-11694 [HIGH] CWE-755 CVE-2019-11694: A vulnerability exists in the Windows sandbox where an uninitialized value in memory can be leaked t
A vulnerability exists in the Windows sandbox where an uninitialized value in memory can be leaked to a renderer from a broker when making a call to access an otherwise unavailable file. This results in the potential leaking of information stored at that memory location. *Note: this issue only occurs on Windows. Other operating systems are unaffected.
nvd