mozilla

3,565 tracked vulnerabilities.

CVE-2023-28177 HIGH
Firefox < 111.0 - Out-of-bounds Write
Jun 02, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-28176 HIGH
Firefox < 111.0 and Firefox ESR < 102.9 - Out-of-bounds Write
Jun 02, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-28164 MEDIUM
Firefox < 111.0 and Firefox ESR < 102.9 - Origin Validation Error via Cross-Origin Iframe Drag
Jun 02, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-28163 MEDIUM
Firefox < 111.0 and Firefox ESR < 102.9 - Path Traversal via Save As Dialog
Jun 02, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-28162 HIGH
Firefox < 111.0 and Firefox ESR < 102.9 - Type Confusion in AudioWorklet Implementation
Jun 02, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-28161 HIGH
Firefox < 111.0 - Permission Persistence via File URL Handling
Jun 02, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-28160 MEDIUM
Firefox < 111.0 - Information Disclosure via Web Extension File Redirect
Jun 02, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-28159 MEDIUM
Firefox < 111.0 - UI Spoofing via Fullscreen Notification Bypass
Jun 02, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-25752 MEDIUM
Firefox <111, Firefox ESR <102.9, Thunderbird <102.9 - Info Disclosure
Jun 02, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-25751 MEDIUM
Firefox < 111.0 and Firefox ESR < 102.9 - Use-After-Free in JIT Code Invalidation
Jun 02, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-25750 MEDIUM
Firefox < 111.0 - Path Traversal via ServiceWorker Offline Cache
Jun 02, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-25749 MEDIUM
Firefox < 111.0 - Incorrect Authorization via Intent Launch Confirmation Bypass
Jun 02, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-25748 MEDIUM
Firefox < 111.0 - UI Spoofing via Fullscreen Notification Obscuring
Jun 02, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-25746 HIGH
Firefox ESR < 102.8 - Out-of-bounds Write
Jun 02, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-25745 HIGH
Firefox < 110.0 - Out-of-bounds Write
Jun 02, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-25744 HIGH
Firefox < 110.0 and Firefox ESR < 102.8 - Out-of-bounds Write
Jun 02, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-25743 HIGH
Firefox Focus - Authentication Bypass by Spoofing via Fullscreen Mode
Jun 02, 2023
CVSS 7.5
EPSS 0.00
CVE-2023-25742 MEDIUM
Firefox <110, Thunderbird <102.8, Firefox ESR <102.8 - Info Disclosure
Jun 02, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-25741 MEDIUM
Firefox < 110.0 - Cross-Origin Image Size Leak via Drag-and-Drop
Jun 02, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-25740 HIGH
Firefox < 110.0 - NTLM Credential Leak via .scf File Download
Jun 02, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-25739 HIGH
Firefox < 110.0, Firefox ESR < 102.8, Thunderbird < 102.8 - Use-After-Free in ScriptLoadContext
Jun 02, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-25738 MEDIUM
Firefox < 110.0 and Firefox ESR < 102.8 - Out-of-bounds Read via DEVMODEW Struct Validation
Jun 02, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-25737 HIGH
Firefox <110, Thunderbird <102.8 - Info Disclosure
Jun 02, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-25735 HIGH
Firefox < 110.0, Firefox ESR < 102.8, Thunderbird < 102.8 - Use-After-Free via Scripted Proxy Wrapper
Jun 02, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-25734 HIGH
Firefox < 110.0 and Firefox ESR < 102.8 - URL Redirection to Untrusted Site via Windows .url Shortcut
Jun 02, 2023
CVSS 8.1
EPSS 0.00