VYPR

Vendor CVEs

Mozilla Corporation

All CVEs

3,628 total · sorted by risk
  • CVE-2025-1938MedMar 4, 2025
    risk 0.42cvss 6.5epss 0.00

    Memory safety bugs present in Firefox 135, Thunderbird 135, Firefox ESR 128.7, and Thunderbird 128.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability…

  • CVE-2025-1934MedMar 4, 2025
    risk 0.42cvss 6.5epss 0.00

    It was possible to interrupt the processing of a RegExp bailout and run additional JavaScript, potentially triggering garbage collection when the engine was not expecting it. This vulnerability was fixed in Firefox 136, Firefox ESR 128.8, Thunderbird 136, and Thunderbird 128.8.

  • CVE-2025-1414MedFeb 18, 2025
    risk 0.42cvss 6.5epss 0.00

    Memory safety bugs present in Firefox 135. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 135.0.1.

  • CVE-2025-1013MedFeb 4, 2025
    risk 0.42cvss 6.5epss 0.00

    A race condition could have led to private browsing tabs being opened in normal browsing windows. This could have resulted in a potential privacy leak. This vulnerability was fixed in Firefox 135, Firefox ESR 128.7, Thunderbird 128.7, and Thunderbird 135.

  • CVE-2025-0510MedFeb 4, 2025
    risk 0.42cvss 6.5epss 0.00

    Thunderbird displayed an incorrect sender address if the From field of an email used the invalid group name syntax that is described in CVE-2024-49040. This vulnerability was fixed in Thunderbird 128.7 and Thunderbird 135.

  • CVE-2025-23109MedJan 11, 2025
    risk 0.42cvss 6.5epss 0.00

    Long hostnames in URLs could be leveraged to obscure the actual host of the website or spoof the website address. This vulnerability was fixed in Firefox for iOS 134.

  • CVE-2025-0246MedJan 7, 2025
    risk 0.42cvss 6.5epss 0.00

    When using an invalid protocol scheme, an attacker could spoof the address bar. *Note: This issue only affected Android operating systems. Other operating systems are unaffected.* *Note: This issue is a different issue from CVE-2025-0244. This vulnerability was fixed in Firefox…

  • CVE-2025-0242MedJan 7, 2025
    risk 0.42cvss 6.5epss 0.13

    Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 115.18, Firefox ESR 128.5, Thunderbird 115.18, and Thunderbird 128.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to…

  • CVE-2024-0754MedJan 23, 2024
    risk 0.42cvss 6.5epss 0.00

    Some WASM source files could have caused a crash when loaded in devtools. This vulnerability affects Firefox < 122.

  • CVE-2024-0753MedJan 23, 2024
    risk 0.42cvss 6.5epss 0.01

    In specific HSTS configurations an attacker could have bypassed HSTS on a subdomain. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7.

  • CVE-2024-0752MedJan 23, 2024
    risk 0.42cvss 6.5epss 0.00

    A use-after-free crash could have occurred on macOS if a Firefox update were being applied on a very busy system. This could have resulted in an exploitable crash. This vulnerability affects Firefox < 122.

  • CVE-2024-0747MedJan 23, 2024
    risk 0.42cvss 6.5epss 0.01

    When a parent page loaded a child in an iframe with `unsafe-inline`, the parent Content Security Policy could have overridden the child Content Security Policy. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7.

  • CVE-2024-0746MedJan 23, 2024
    risk 0.42cvss 6.5epss 0.01

    A Linux user opening the print preview dialog could have caused the browser to crash. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7.

  • CVE-2024-0741MedJan 23, 2024
    risk 0.42cvss 6.5epss 0.02

    An out of bounds write in ANGLE could have allowed an attacker to corrupt memory leading to a potentially exploitable crash. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7.

  • CVE-2024-0605HigJan 22, 2024
    risk 0.42cvss 7.5epss 0.00

    Using a javascript: URI with a setTimeout race condition, an attacker can execute unauthorized scripts on top origin sites in urlbar. This bypasses security measures, potentially leading to arbitrary code execution or unauthorized actions within the user's loaded webpage. This…

  • CVE-2023-6872MedDec 19, 2023
    risk 0.42cvss 6.5epss 0.01

    Browser tab titles were being leaked by GNOME to system logs. This could potentially expose the browsing habits of users running in a private tab. This vulnerability affects Firefox < 121.

  • CVE-2023-6869MedDec 19, 2023
    risk 0.42cvss 6.5epss 0.01

    A `<dialog>` element could have been manipulated to paint content outside of a sandboxed iframe. This could allow untrusted content to display under the guise of trusted content. This vulnerability affects Firefox < 121.

  • CVE-2023-6865MedDec 19, 2023
    risk 0.42cvss 6.5epss 0.01

    `EncryptingOutputStream` was susceptible to exposing uninitialized data. This issue could only be abused in order to write data to a local disk which may have implications for private browsing mode. This vulnerability affects Firefox ESR < 115.6 and Firefox < 121.

  • CVE-2023-6860MedDec 19, 2023
    risk 0.42cvss 6.5epss 0.01

    The `VideoBridge` allowed any content process to use textures produced by remote decoders. This could be abused to escape the sandbox. This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Firefox < 121.

  • CVE-2023-4421MedDec 12, 2023
    risk 0.42cvss 6.5epss 0.01

    The NSS code used for checking PKCS#1 v1.5 was leaking information useful in mounting Bleichenbacher-like attacks. Both the overall correctness of the padding as well as the length of the encrypted message was leaking through timing side-channel. By sending large number of…

  • CVE-2023-6211MedNov 21, 2023
    risk 0.42cvss 6.5epss 0.00

    If an attacker needed a user to load an insecure http: page and knew that user had enabled HTTPS-only mode, the attacker could have tricked the user into clicking to grant an HTTPS-only exception if they could get the user to participate in a clicking game. This vulnerability…

  • CVE-2023-6210MedNov 21, 2023
    risk 0.42cvss 6.5epss 0.01

    When an https: web page created a pop-up from a "javascript:" URL, that pop-up was incorrectly allowed to load blockable content such as iframes from insecure http: URLs This vulnerability affects Firefox < 120.

  • CVE-2023-6209MedNov 21, 2023
    risk 0.42cvss 6.5epss 0.01

    Relative URLs starting with three slashes were incorrectly parsed, and a path-traversal "/../" part in the path could be used to override the specified host. This could contribute to security problems in web sites. This vulnerability affects Firefox < 120, Firefox ESR < 115.5.0,…

  • CVE-2023-6205MedNov 21, 2023
    risk 0.42cvss 6.5epss 0.01

    It was possible to cause the use of a MessagePort after it had already been freed, which could potentially have led to an exploitable crash. This vulnerability affects Firefox < 120, Firefox ESR < 115.5.0, and Thunderbird < 115.5.

  • CVE-2023-6204MedNov 21, 2023
    risk 0.42cvss 6.5epss 0.01

    On some systems—depending on the graphics settings and drivers—it was possible to force an out-of-bounds read and leak memory data into the images created on the canvas element. This vulnerability affects Firefox < 120, Firefox ESR < 115.5.0, and Thunderbird < 115.5.

  • CVE-2023-5732MedOct 25, 2023
    risk 0.42cvss 6.5epss 0.01

    An attacker could have created a malicious link using bidirectional characters to spoof the location in the address bar when visited. This vulnerability affects Firefox < 117, Firefox ESR < 115.4, and Thunderbird < 115.4.1.

  • CVE-2023-5727MedOct 25, 2023
    risk 0.42cvss 6.5epss 0.01

    The executable file warning was not presented when downloading .msix, .msixbundle, .appx, and .appxbundle files, which can run commands on a user's computer. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.* This vulnerability…

  • CVE-2023-5171MedSep 27, 2023
    risk 0.42cvss 6.5epss 0.01

    During Ion compilation, a Garbage Collection could have resulted in a use-after-free condition, allowing an attacker to write two NUL bytes, and cause a potentially exploitable crash. This vulnerability affects Firefox < 118, Firefox ESR < 115.3, and Thunderbird < 115.3.

  • CVE-2023-5169MedSep 27, 2023
    risk 0.42cvss 6.5epss 0.01

    A compromised content process could have provided malicious data in a `PathRecording` resulting in an out-of-bounds write, leading to a potentially exploitable crash in a privileged process. This vulnerability affects Firefox < 118, Firefox ESR < 115.3, and Thunderbird < 115.3.

  • CVE-2023-4580MedSep 11, 2023
    risk 0.42cvss 6.5epss 0.00

    Push notifications stored on disk in private browsing mode were not being encrypted potentially allowing the leak of sensitive information. This vulnerability affects Firefox < 117, Firefox ESR < 115.2, and Thunderbird < 115.2.

  • CVE-2023-4578MedSep 11, 2023
    risk 0.42cvss 6.5epss 0.01

    When calling `JS::CheckRegExpSyntax` a Syntax Error could have been set which would end in calling `convertToRuntimeErrorAndClear`. A path in the function could attempt to allocate memory when none is available which would have caused a newly created Out of Memory exception to…

  • CVE-2023-4577MedSep 11, 2023
    risk 0.42cvss 6.5epss 0.01

    When `UpdateRegExpStatics` attempted to access `initialStringHeap` it could already have been garbage collected prior to entering the function, which could potentially have led to an exploitable crash. This vulnerability affects Firefox < 117, Firefox ESR < 115.2, and…

  • CVE-2023-4575MedSep 11, 2023
    risk 0.42cvss 6.5epss 0.01

    When creating a callback over IPC for showing the File Picker window, multiple of the same callbacks could have been created at a time and eventually all simultaneously destroyed as soon as one of the callbacks finished. This could have led to a use-after-free causing a…

  • CVE-2023-4574MedSep 11, 2023
    risk 0.42cvss 6.5epss 0.01

    When creating a callback over IPC for showing the Color Picker window, multiple of the same callbacks could have been created at a time and eventually all simultaneously destroyed as soon as one of the callbacks finished. This could have led to a use-after-free causing a…

  • CVE-2023-4573MedSep 11, 2023
    risk 0.42cvss 6.5epss 0.01

    When receiving rendering data over IPC `mStream` could have been destroyed when initialized, which could have led to a use-after-free causing a potentially exploitable crash. This vulnerability affects Firefox < 117, Firefox ESR < 102.15, Firefox ESR < 115.2, Thunderbird <…

  • CVE-2023-4053MedAug 1, 2023
    risk 0.42cvss 6.5epss 0.01

    A website could have obscured the full screen notification by using a URL with a scheme handled by an external program, such as a mailto URL. This could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 116, Firefox ESR < 115.2, and…

  • CVE-2023-4052MedAug 1, 2023
    risk 0.42cvss 6.5epss 0.01

    The Firefox updater created a directory writable by non-privileged users. When uninstalling Firefox, any files in that directory would be recursively deleted with the permissions of the uninstalling user account. This could be combined with creation of a junction (a form of…

  • CVE-2023-37456MedJul 12, 2023
    risk 0.42cvss 6.5epss 0.00

    The session restore helper crashed whenever there was no parameter sent to the message handler. This vulnerability affects Firefox for iOS < 115.

  • CVE-2023-3482MedJul 5, 2023
    risk 0.42cvss 6.5epss 0.00

    When Firefox is configured to block storage of all cookies, it was still possible to store data in localstorage by using an iframe with a source of 'about:blank'. This could have led to malicious websites storing tracking data without permission. This vulnerability affects…

  • CVE-2023-37210MedJul 5, 2023
    risk 0.42cvss 6.5epss 0.00

    A website could prevent a user from exiting full-screen mode via alert and prompt calls. This could lead to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 115.

  • CVE-2023-37206MedJul 5, 2023
    risk 0.42cvss 6.5epss 0.01

    Uploading files which contain symlinks may have allowed an attacker to trick a user into submitting sensitive data to a malicious website. This vulnerability affects Firefox < 115.

  • CVE-2023-37205MedJul 5, 2023
    risk 0.42cvss 6.5epss 0.00

    The use of RTL Arabic characters in the address bar may have allowed for URL spoofing. This vulnerability affects Firefox < 115.

  • CVE-2023-37204MedJul 5, 2023
    risk 0.42cvss 6.5epss 0.00

    A website could have obscured the fullscreen notification by using an option element by introducing lag via an expensive computational function. This could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 115.

  • CVE-2023-37207MedJul 5, 2023
    risk 0.42cvss 6.5epss 0.01

    A website could have obscured the fullscreen notification by using a URL with a scheme handled by an external program, such as a mailto URL. This could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 115, Firefox ESR < 102.13, and…

  • CVE-2023-29545MedJun 19, 2023
    risk 0.42cvss 6.5epss 0.01

    Similar to CVE-2023-28163, this time when choosing 'Save Link As', suggested filenames containing environment variable names would have resolved those in the context of the current user. *This bug only affects Firefox and Thunderbird on Windows. Other versions of Firefox…

  • CVE-2023-32210MedJun 19, 2023
    risk 0.42cvss 6.5epss 0.01

    Documents were incorrectly assuming an ordering of principal objects when ensuring we were loading an appropriately privileged principal. In certain circumstances it might have been possible to cause a document to be loaded with a higher privileged principal than intended. This…

  • CVE-2023-32211MedJun 2, 2023
    risk 0.42cvss 6.5epss 0.01

    A type checking bug would have led to invalid code being compiled. This vulnerability affects Firefox < 113, Firefox ESR < 102.11, and Thunderbird < 102.11.

  • CVE-2023-32206MedJun 2, 2023
    risk 0.42cvss 6.5epss 0.01

    An out-of-bound read could have led to a crash in the RLBox Expat driver. This vulnerability affects Firefox < 113, Firefox ESR < 102.11, and Thunderbird < 102.11.

  • CVE-2023-29549MedJun 2, 2023
    risk 0.42cvss 6.5epss 0.00

    Under certain circumstances, a call to the bind function may have resulted in the incorrect realm. This may have created a vulnerability relating to JavaScript-implemented sandboxes such as SES. This vulnerability affects Firefox for Android < 112, Firefox < 112,…

  • CVE-2023-29548MedJun 2, 2023
    risk 0.42cvss 6.5epss 0.01

    A wrong lowering instruction in the ARM64 Ion compiler resulted in a wrong optimization result. This vulnerability affects Firefox < 112, Focus for Android < 112, Firefox ESR < 102.10, Firefox for Android < 112, and Thunderbird < 102.10.

Page 25 of 73