Mozilla Latest Vulnerabilities

November 13

CVE-2024-11159
MozillaThunderbird4.3MEDIUM

November 6

Mozilla Firefox Vulnerability Affects Firefox Prior to Version 126

CVE-2024-10941
Mozilla

October 29

Second-Order Alert: Incorrectly Allowing Internal Links to Utilize App Scheme for Deeplinking Could Bypass URL Safety Checks

CVE-2024-10474
MozillaFocus For iOS6.5MEDIUM

Firefox Vulnerable to Memory Corruption Due to IndexedDB Race Conditions

CVE-2024-10468
MozillaFirefox5.3MEDIUM

Memory Safety Bugs Affecting Firefox and Thunderbird

CVE-2024-10467
MozillaFirefox8.8HIGH

Mozilla Discloses Firefox Push Message Vulnerability

CVE-2024-10466
MozillaFirefox7.5HIGH

Firefox Paste Vulnerability Could Lead to Spoofing Attacks

CVE-2024-10465
MozillaFirefox6.5MEDIUM

Mozilla Addresses Remote Code Execution Vulnerability in Firefox

CVE-2024-10464
MozillaFirefox6.5MEDIUM

Firefox Vulnerability Affects Video Frames in Some Situations

CVE-2024-10463
MozillaFirefox6.5MEDIUM

Firefox Vulnerability Could Allow Origin Spoofing in Permission Prompts

CVE-2024-10462
MozillaFirefox6.5MEDIUM

Mozilla Firefox Vulnerability Allows XSS Attacks

CVE-2024-10461
MozillaFirefox6.1MEDIUM

Firefox 132 and earlier vulnerable to data URL obstruction

CVE-2024-10460
MozillaFirefox5.3MEDIUM

Mozilla Firefox Vulnerability Affects Several Versions

CVE-2024-10459
MozillaFirefox7.5HIGH

Firefox Vulnerability: Permission Leak Due to Embed or Object Elements

CVE-2024-10458
MozillaFirefox7.5HIGH

October 15

Incorrect HTTPS Indicator in Firefox for iOS Prior to Version 131.2

CVE-2024-10004
MozillaFirefox For iOS

October 14

CVE-2024-9936
MozillaFirefox

October 9

Mozilla Firefox Vulnerability: Code Execution through Animation Timelines

CVE-2024-9680
MozillaFirefox🔥😄👾9.8CRITICAL

October 1

Memory Safety Bugs Uncovered in Firefox 130, Some Could Lead to Code Execution

CVE-2024-9403
MozillaFirefox

Firefox for Android Vulnerability: File Name with Many Spaces Triggers Extension Obscuration

CVE-2024-9395
MozillaFirefox

Firefox Full-Screen Mode Vulnerability Allows Spoofing

CVE-2024-9391
MozillaFirefox

Mozilla Addresses Memory Safety Bugs in Firefox, Firefox ESR, and Thunderbird

CVE-2024-9402
MozillaFirefox

Memory Safety Bugs Affect Firefox and Thunderbird

CVE-2024-9401
MozillaFirefox

Mozilla Orlando Memory Corruption Vulnerability

CVE-2024-9400
MozillaFirefox

Mozilla Firefox Crashes Due to Initiating Specially Crafted WebTransport Session

CVE-2024-9399
MozillaFirefox7.5HIGH

Firefox vulnerability allows attacker to determine if application is installed

CVE-2024-9398
MozillaFirefox5.3MEDIUM

Mozilla Fixes Critical UI Bugs, Including Clickjacking Vulnerability

CVE-2024-9397
MozillaFirefox6.1MEDIUM

Mozilla Firefox Vulnerable to Memory Corruption Due to Structured Clone

CVE-2024-9396
MozillaFirefox

Mozilla Firefox Vulnerability Allows Cross-Origin JavaScript Execution

CVE-2024-9394
MozillaFirefox7.5HIGH

Specially Crafted Multipart Response Could Allow Arbitrary JavaScript Execution in Firefox

CVE-2024-9393
MozillaFirefox7.5HIGH

Mozilla Warns of Vulnerability in Firefox and Thunderbird

CVE-2024-9392
MozillaFirefox

September 17

CVE-2024-8900
MozillaFirefox7.5HIGH

CVE-2024-8897
MozillaFirefox6.1MEDIUM

September 6

Type Confusion Vulnerability in Firefox Could Lead to Memory Corruption and Crash

CVE-2024-7652
Mozilla

Potentially Exploitable Crash Vulnerability in Thunderbird < 128.2

CVE-2024-8394
MozillaThunderbird6.5MEDIUM

September 3

CVE-2024-8399
MozillaFirefox Focus4.7MEDIUM

Memory Safety Bugs Affect Firefox, Could Lead to Code Execution

CVE-2024-8389
MozillaFirefox9.8CRITICAL

Firefox 121: New Notice System for Fullscreen Mode Transition

CVE-2024-8388
MozillaFirefox5.3MEDIUM

Memory Safety Bugs Affect Firefox and Thunderbird

CVE-2024-8387
MozillaFirefox9.8CRITICAL

Mozilla Firefox Vulnerability Could Allow Spoofing Attacks

CVE-2024-8386
MozillaFirefox6.1MEDIUM

Firefox Vulnerability Affects Users of < 130 and Firefox ESR < 128.2

CVE-2024-8385
MozillaFirefox9.8CRITICAL

Memory Corruption Vulnerability in Firefox (< 130, < 128.2, < 115.15)

CVE-2024-8384
MozillaFirefox9.8CRITICAL

Mozilla Fixes Vulnerability in Firefox Allowing Unscrupulous Websites to Launch Applications Without User Permission

CVE-2024-8383
MozillaFirefox7.5HIGH

Firefox Vulnerability Affects Internal Browser Event Interfaces

CVE-2024-8382
MozillaFirefox8.8HIGH

Possible Type Confusion Vulnerability in Firefox

CVE-2024-8381
MozillaFirefox9.8CRITICAL

August 6

CVE-2024-43113
MozillaFirefox For iOS6.1MEDIUM

CVE-2024-43112
MozillaFirefox For iOS6.1MEDIUM

CVE-2024-43111
MozillaFirefox For iOS6.1MEDIUM

Use-After-Free Vulnerability in Firefox Prior to Version 129

CVE-2024-7530
MozillaFirefox8.8HIGH

Mozilla Fixes Partial Obscuration of Security Prompts Vulnerability in Firefox

CVE-2024-7523
MozillaFirefox8.1HIGH

Firefox Vulnerability Allows Plaintext Passage on Intel Sandy Bridge

CVE-2024-7531
MozillaFirefox6.5MEDIUM

Mozilla Firefox Vulnerability Allows Malicious Sites to Trick Users into Granting Permissions

CVE-2024-7529
MozillaFirefox6.5MEDIUM

Mozilla Firefox Vulnerability Could Lead to Use-After-Free Security Risk

CVE-2024-7528
MozillaFirefox8.8HIGH

Possible Use-After-Free Vulnerability Affecting Firefox < 129, Firefox ESR < 115.14, and Firefox ESR < 128.1

CVE-2024-7527
MozillaFirefox8.8HIGH

Uninitialized Memory Leak in Firefox Could Lead to Sensitive Data Exposure

CVE-2024-7526
MozillaFirefox6.5MEDIUM

Firefox Vulnerability Allows Minimal Priviledged Extension to Modify Request Bodies

CVE-2024-7525
MozillaFirefox8.1HIGH

Mozilla Fixes Tracking Protection Bypass Vulnerability in Firefox

CVE-2024-7524
MozillaFirefox6.1MEDIUM

Firefox Vulnerability Could Lead to Out-of-Bounds Read

CVE-2024-7522
MozillaFirefox8.8HIGH

Incomplete WebAssembly Exception Handling Leads to Use-After-Free Vulnerability in Firefox

CVE-2024-7521
MozillaFirefox8.8HIGH

Firefox Type Confusion Vulnerability Could Lead to Code Execution

CVE-2024-7520
MozillaFirefox8.8HIGH

Memory Corruption Vulnerability in Firefox Could Lead to Sandbox Escape

CVE-2024-7519
MozillaFirefox9.6CRITICAL

Mozilla Firefox Vulnerability Allows Spoofing Attacks via Fullscreen Notifications

CVE-2024-7518
MozillaFirefox6.5MEDIUM

July 9

CVE-2024-6609
MozillaFirefox8.8HIGH

CVE-2024-6610
MozillaFirefox4.3MEDIUM

Mozilla Firefox Vulnerability Allows Tapjacking

CVE-2024-6605
Mozilla

CVE-2024-6608
MozillaFirefox4.3MEDIUM

CVE-2024-6611
MozillaFirefox

June 13

Private Tab Data Persistence Vulnerability Affects Firefox for iOS

CVE-2024-38312
MozillaFirefox For iOS6.5MEDIUM

Fake Location URL Bar Vulnerability Affects Firefox for iOS

CVE-2024-38313
MozillaFirefox For iOS4.3MEDIUM

June 11

Memory Safety Bugs Affect Firefox, Could Lead to Code Execution

CVE-2024-5701
MozillaFirefox

Firefox Vulnerability: Incorrect Checking of Cookie Prefixes

CVE-2024-5699
MozillaFirefox

Mozilla Firefox Vulnerability: Overlay Attack via Fullscreen Feature

CVE-2024-5698
MozillaFirefox6.1MEDIUM

Mozilla Firefox Screenshot Vulnerability

CVE-2024-5697
MozillaFirefox4.3MEDIUM

Mozilla Firefox Vulnerability Affects Users

CVE-2024-5695
MozillaFirefox9.8CRITICAL

Use-After-Free Vulnerability Affects Firefox < 127

CVE-2024-5694
MozillaFirefox7.5HIGH

Mozilla Firefox Vulnerability Allows Phishing Attacks Through Screenshots

CVE-2024-5689
MozillaFirefox4.3MEDIUM

Firefox for Android Vulnerability Affects Triggering Principal Calculation

CVE-2024-5687
MozillaFirefox

Memory Safety Bugs Affect Firefox and Thunderbird

CVE-2024-5700
MozillaFirefox

Firefox Vulnerability Could Lead to Exploitable Crash

CVE-2024-5696
MozillaFirefox

Firefox Vulnerability: Cross-Origin Tainting Could Lead to Image Data Access

CVE-2024-5693
MozillaFirefox

Mozilla Firefox Vulnerability: Tricked into Saving Files with Disallowed Extensions

CVE-2024-5692
MozillaFirefox

Bypassing Restrictions Vulnerability Affects Firefox < 127 and Firefox ESR < 115.12

CVE-2024-5691
MozillaFirefox4.7MEDIUM

Attackers could guess functional external protocol handlers on a user's system by monitoring operation times

CVE-2024-5690
MozillaFirefox4.3MEDIUM

Mozilla Firefox Vulnerability: Use-After-Free Due to Object Transplant

CVE-2024-5688
MozillaFirefox

Potentially Exploitable Memory Corruption Vulnerability Affects Firefox

CVE-2024-5702
MozillaFirefox

May 14

Memory Safety Bugs Affect Firefox, Could Lead to Code Execution

CVE-2024-4778
MozillaFirefox

Firefox Full-Screen Mode Vulnerability

CVE-2024-4776
MozillaFirefox

Firefox Vulnerability: Iterator Stop Condition Missing in Built-in Profiler

CVE-2024-4775
MozillaFirefox

Firefox Vulnerable to Undefined Behavior Due to Move Semantics Bypass

CVE-2024-4774
MozillaFirefox

Firefox Vulnerability Could Have Been Used for Obfuscation

CVE-2024-4773
MozillaFirefox

CVE-2024-4772
MozillaFirefox

Use-After-Free Vulnerability in Firefox Could Lead to Code Execution

CVE-2024-4771
MozillaFirefox

Mozilla Firefox Vulnerability Affects Fullscreen Notifications

CVE-2024-4766
MozillaFirefox

Insecure MD5 Hash Vulnerability Affects Firefox for Android

CVE-2024-4765
MozillaFirefox

Firefox Vulnerability: Use-After-Free in WebRTC Threads

CVE-2024-4764
MozillaFirefox

Memory Safety Bugs Affect Firefox, Firefox ESR, and Thunderbird

CVE-2024-4777
MozillaFirefox

Potential Use-After-Free Crash in Firefox

CVE-2024-4770
MozillaFirefox

Mozilla Firefox Vulnerability: Error Messages Could Reveal Cross-Origin Information

CVE-2024-4769
MozillaFirefox

Firefox Vulnerability Allows Easier Tricking of Users into Granting Permissions

CVE-2024-4768
MozillaFirefox

Firefox Vulnerability: Private Browsing Files Not Properly Deleted

CVE-2024-4767
MozillaFirefox

Arbitrary JavaScript Execution Vulnerability in Firefox

CVE-2024-4367
MozillaFirefox🔥😄👾