A use-after-free vulnerability when using an incorrect URL during the reloading of a docshell. This results in a potentially exploitable crash. This …
A use-after-free vulnerability during video control operations when a "<track>" element holds a reference to an older window if that window has been …
A use-after-free vulnerability with content viewer listeners that results in a potentially exploitable crash. This vulnerability affects Firefox < 54…
A use-after-free vulnerability during specific user interactions with the input method editor (IME) in some languages due to how events are handled. …
A use-after-free vulnerability when holding a selection during scroll events. This results in a potentially exploitable crash. This vulnerability aff…
A use-after-free vulnerability during changes in style when manipulating DOM elements. This results in a potentially exploitable crash. This vulnerab…
An out-of-bounds read during the processing of glyph widths during text layout. This results in a potentially exploitable crash and could allow an at…
A use-after-free vulnerability occurs during certain text input selection resulting in a potentially exploitable crash. This vulnerability affects Th…
A use-after-free vulnerability in SMIL animation functions occurs when pointers to animation elements in an array are dropped from the animation cont…
A use-after-free vulnerability occurs when redirecting focus handling which results in a potentially exploitable crash. This vulnerability affects Th…
A use-after-free vulnerability occurs during transaction processing in the editor during design mode interactions. This results in a potentially expl…
A use-after-free vulnerability during XSLT processing due to the result handler being held by a freed handler during handling. This results in a pote…
A use-after-free vulnerability during XSLT processing due to poor handling of template parameters. This results in a potentially exploitable crash. T…
A use-after-free vulnerability during XSLT processing due to a failure to propagate error conditions during matching while evaluating context, leadin…
A use-after-free can occur when events are fired for a "FontFace" object after the object has been already been destroyed while working with fonts. T…
When adding a range to an object in the DOM, it is possible to use "addRange" to add the range to an incorrect root object. This triggers a use-after…
A use-after-free error can occur when manipulating ranges in selections with one node inside a native anonymous tree and one node outside of it. This…
A use-after-free can occur during buffer storage operations within the ANGLE graphics library, used for WebGL content. The buffer storage can be free…
A potential use-after-free found through fuzzing during DOM manipulation of SVG content. This vulnerability affects Thunderbird < 45.7, Firefox ESR <…
A use-after-free vulnerability in the Media Decoder when working with media files when some events are fired after the media elements are freed from …
Use-after-free while manipulating the "navigator" object within WebVR. Note: WebVR is not currently enabled by default. This vulnerability affects Fi…
Use-after-free resulting in potentially exploitable crash when manipulating DOM subtrees in the Editor. This vulnerability affects Firefox < 50.1, Fi…
Use-after-free while manipulating DOM events and removing audio elements due to errors in the handling of node adoption. This vulnerability affects F…
Use-after-free while manipulating XSL in XSLT documents. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.
Use-after-free vulnerability in Web Animations when interacting with cycle collection found through fuzzing. This vulnerability affects Firefox < 51.
Two use-after-free errors during DOM operations resulting in potentially exploitable crashes. This vulnerability affects Firefox < 50.
A use-after-free during web animations when working with timelines resulting in a potentially exploitable crash. This vulnerability affects Firefox <…
A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulnerability has been discovered in the wild targeting…
A potentially exploitable use-after-free crash during actor destruction with service workers. This issue does not affect releases earlier than Firefo…
An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on Windows is aff…