Mozilla News Articles

Recent news articles refferecing the vendors vulnerabilities.

Firefox flaw exposes unpatched Tor Browser users

Firefox flaw exposes unpatched Tor Browser users : Latest in - Arabian Post

3 weeks ago

Hackers Can Compromise Tor Browser Users by Exploiting Firefox JIT Flaw - IT Security News

2026-07-30 07:07 Tor Browser users on unpatched versions may be at risk of compromise simply by visiting a malicious webpage, following the disclosure of CVE-2026-10702, a serious...

3 weeks ago

Researchers Show a Single Malicious Webpage Visit Can Compromise Tor Browser

Nebula says CVE-2026-10702 lets a malicious webpage compromise Tor Browser and start an Android 17 root chain.

3 weeks ago

Update Firefox to Patch CVE-2025-13016 Vulnerability Affecting 180 Million Users

AI security firm AISLE recently discovered a serious vulnerability in the Firefox web browser that went unnoticed for six months. This flaw could have let attackers run their own instructions on a user’s...

Zero Day Initiative — CVE-2025-4919: Corruption via Math Space in Mozilla Firefox

In recent years, there has been an increase interest in the JavaScript engine vulnerabilities in order to compromise web browsers. Notably, vulnerabilities in JIT engines are among the most favorite ones as it provides strong primitives and well-known techniques are already available to facilitate c

Firefox 140 Released With Fix for Code Execution Vulnerability - Update Now

Mozilla has released Firefox 140, addressing multiple critical security vulnerabilities, including a high-impact use-after-free vulnerability that could lead to code execution. 

Mozilla Quickly Fixes Firefox Vulnerabilities from Pwn2Own 2025 with Urgent Patches

The vulnerabilities—CVE-2025-4918 and CVE-2025-4919—were both found in Firefox’s JavaScript engine and allowed out-of-bounds memory access

Critical Firefox 0-Day Flaws Allow Remote Code Execution

Mozilla has urgently patched two critical 0-day vulnerabilities in its popular web browser Firefox, both of which could allow remote attackers.

Firefox 0-day Vulnerabilities Let Attackers Execute Malicious Code

Mozilla has released an emergency security update to address two critical vulnerabilities in Firefox that could allow attackers.

Critical Firefox 0-Day Flaws Enable Remote Code Execution

Impact both the standard and Extended Support Release (ESR) versions of the browser, prompting a swift response from Mozilla’s security team.

Firefox patches flaw similar to exploited Chrome zero-day

The sandbox escape flaw affected Firefox and Chrome browsers on Windows machines.

Critical Firefox, Tor Browser sandbox escape flaw fixed (CVE-2025-2857) - Help Net Security

There's currently no indication that the Firefox sandbox escape vulnerability (CVE-2025-2857) is under active exploitation.

Mozilla fixed critical Firefox vulnerability CVE-2025-2857

Mozilla addressed a critical vulnerability, tracked as CVE-2025-2857, impacting its Firefox browser for Windows.

Mozilla Patches Critical Firefox Bug Similar to Chrome’s Recent Zero-Day Vulnerability

Mozilla patched CVE-2025-2857 in Firefox after Chrome’s exploited zero-day revealed similar IPC flaws.

New Windows Cyber Attack Warning As 0-Click Russian Backdoor Confirmed

Security researchers have confirmed how a 9.8 severity vulnerability was used in a zero-click cyber attack chain by Russian hackers against Windows users.

Russian RomCom APT Group Leverages Zero-Day Flaws in Firefox, Windows

Russia-backed hackers, known as RomCom, have exploited critical zero-day vulnerabilities in Mozilla Firefox and Windows to launch targeted attacks

'RomCom' APT Mounts Zero-Day, Zero-Click Browser Escapes in Firefox, Tor

The innocuously named Russian-sponsored cyber threat actor has combined critical and serious vulnerabilities in Windows and Firefox products in a zero-click code execution exploit.

RomCom exploits Firefox and Windows zero days in the wild

ESET Research details the analysis of a previously unknown vulnerability in Mozilla products exploited in the wild and another previously unknown Microsoft Windows vulnerability, combined in a zero-click exploit.

RomCom hackers chained Firefox and Windows zero-days to deliver backdoor - Help Net Security

Russia-aligned APT group RomCom was behind attacks that leveraged CVE-2024-9680 and CVE-2024-49039 as zero-days earlier this year.

Government issues important warning for Mozilla Firefox browser - Times of India

TECH NEWS : Update Mozilla products immediately to protect against CVE-2024-5690 and other identified vulnerabilities. Stay secure and prevent potential remote at

Vulnerabilities - The Shaco: Your Source for Infosec, Bug Bounties, and Tech News.

Explore The Shaco for cutting-edge insights into cybersecurity, ethical hacking, and infosec. Stay updated on bug bounties, technology news, and pro hacking tips to secure the digital world. Join a community dedicated to ethical hacking and advanced security practices.

Mozilla fixes critical Firefox bug exploited in the wild

Mozilla has patched a serious security flaw in its Firefox web browser that the company said is being exploited by hackers.

Tor Browser Update Patches Exploited Firefox Zero-Day

Tor browser version 13.5.7 is rolling out with patches for an exploited zero-day vulnerability recently addressed in Firefox.

Actively exploited Firefox zero-day fixed, update ASAP! (CVE-2024-9680) - Help Net Security

Mozilla released an emergency update for its Firefox and Firefox ESR browsers to fix a vulnerability (CVE-2024-9680) exploited in the wild.

Mozilla releases patches for actively exploited Firefox bug

It's patch time for Firefox fans as Mozilla issues a security advisory for a critical code execution vulnerability in the browser. Mozilla said CVE-2024-9680 is a use-after-free issue in Animation timelines –...

No more news articles to load.