Mozilla Vpn vulnerabilities
2 known vulnerabilities affecting mozilla/mozilla_vpn.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1
Vulnerabilities
Page 1 of 1
CVE-2022-0517HIGHCVSS 7.8≥ unspecified, < 2.7.12022-12-22
CVE-2022-0517 [HIGH] CWE-434 CVE-2022-0517: Mozilla VPN can load an OpenSSL configuration file from an unsecured directory. A user or attacker w
Mozilla VPN can load an OpenSSL configuration file from an unsecured directory. A user or attacker with limited privileges could leverage this to launch arbitrary code with SYSTEM privilege. This vulnerability affects Mozilla VPN < 2.7.1.
cvelistv5nvd
CVE-2021-29978CRITICALCVSS 9.8≥ 2.0, < 2.3≥ unspecified, < 2.32021-08-05
CVE-2021-29978 [CRITICAL] CVE-2021-29978: Multiple low security issues were discovered and fixed in a security audit of Mozilla VPN 2.x branch
Multiple low security issues were discovered and fixed in a security audit of Mozilla VPN 2.x branch as part of a 3rd party security audit. This vulnerability affects Mozilla VPN < 2.3.
cvelistv5nvd