Vulnerability index

Browse CVEs

392 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Firefox CRITICAL 9.8
CVE-2019-9796

A use-after-free vulnerability can occur when the SMIL animation controller incorrectly registers with the refresh driver twice when only a single re…

Fix: 60.6.0 / 66.0+
Fix from $2,300 2019-04-26
Firefox CRITICAL 9.8
CVE-2019-9788

Mozilla developers and community members reported memory safety bugs present in Firefox 65, Firefox ESR 60.5, and Thunderbird 60.5. Some of these bug…

Fix: 60.6.0 / 66.0+
Fix from $2,300 2019-04-26
Firefox CRITICAL 9.8
CVE-2019-9789

Mozilla developers and community members reported memory safety bugs present in Firefox 65. Some of these bugs showed evidence of memory corruption a…

Fix: 66.0+
Fix from $2,300 2019-04-26
Firefox CRITICAL 9.8
CVE-2019-9790

A use-after-free vulnerability can occur when a raw pointer to a DOM element on a page is obtained using JavaScript and the element is then removed w…

Fix: after 66.0
Fix from $2,300 2019-04-26
Firefox CRITICAL 9.8
CVE-2019-9791EPSS 20%

The type inference system allows the compilation of functions that can cause type confusions between arbitrary objects when compiled through the IonM…

Fix: 60.6.0 / 66.0+
Fix from $2,300 2019-04-26
Firefox CRITICAL 9.8
CVE-2019-9792EPSS 13%

The IonMonkey just-in-time (JIT) compiler can leak an internal JS_OPTIMIZED_OUT magic value to the running script during a bailout. This magic value …

Fix: 60.6.0 / 66.0+
Fix from $2,300 2019-04-26
Thunderbird CRITICAL 9.8
CVE-2018-18512

A use-after-free vulnerability can occur while playing a sound notification in Thunderbird. The memory storing the sound data is immediately freed, a…

Fix: 65.0+
Fix from $2,300 2019-04-26
Firefox CRITICAL 9.1
CVE-2017-7774

Out-of-bounds read in Graphite2 Library in Firefox before 54 in graphite2::Silf::readGraphite function.

Fix: 1.3.10 / 54.0+
Fix from $2,300 2019-04-15
Firefox CRITICAL 9.8
CVE-2018-12405

Mozilla developers and community members reported memory safety bugs present in Firefox 63 and Firefox ESR 60.3. Some of these bugs showed evidence o…

Fix: 60.4.0 / 64.0+
Fix from $2,300 2019-02-28
Firefox CRITICAL 9.8
CVE-2018-12407

A buffer overflow occurs when drawing and validating elements with the ANGLE graphics library, used for WebGL content, when working with the VertexBu…

Fix: 64.0+
Fix from $2,300 2019-02-28
Firefox CRITICAL 9.8
CVE-2018-18492EPSS 9%

A use-after-free vulnerability can occur after deleting a selection element due to a weak reference to the select element in the options collection. …

Fix: 60.4.0 / 64.0+
Fix from $2,300 2019-02-28
Firefox CRITICAL 9.8
CVE-2018-18493

A buffer overflow can occur in the Skia library during buffer offset calculations with hardware accelerated canvas 2D actions due to the use of 32-bi…

Fix: 60.4.0 / 64.0+
Fix from $2,300 2019-02-28
Firefox CRITICAL 9.8
CVE-2018-18498

A potential vulnerability leading to an integer overflow can occur during buffer size calculations for images when a raw value is used instead of the…

Fix: 60.4 / 64.0+
Fix from $2,300 2019-02-28
Firefox CRITICAL 9.8
CVE-2018-12390

Mozilla developers and community members reported memory safety bugs present in Firefox 62 and Firefox ESR 60.2. Some of these bugs showed evidence o…

Fix: 60.3.0 / 63.0+
Fix from $2,300 2019-02-28
Firefox CRITICAL 9.8
CVE-2018-12392

When manipulating user events in nested loops while opening a document through script, it is possible to trigger a potentially exploitable crash due …

Fix: 60.3.0 / 63.0+
Fix from $2,300 2019-02-28
Firefox CRITICAL 10.0
CVE-2018-18505

An earlier fix for an Inter-process Communication (IPC) vulnerability, CVE-2011-3079, added authentication to communication between IPC endpoints and…

Fix: 60.5.0 / 65.0+
Fix from $2,300 2019-02-05
Firefox CRITICAL 9.8
CVE-2018-18500EPSS 12%

A use-after-free vulnerability can occur while parsing an HTML5 stream in concert with custom HTML elements. This results in the stream parser object…

Fix: 60.5 / 65.0+
Fix from $2,300 2019-02-05
Firefox CRITICAL 9.8
CVE-2018-18501

Mozilla developers and community members reported memory safety bugs present in Firefox 64 and Firefox ESR 60.4. Some of these bugs showed evidence o…

Fix: 60.5 / 65.0+
Fix from $2,300 2019-02-05
Firefox CRITICAL 9.8
CVE-2018-18502

Mozilla developers and community members reported memory safety bugs present in Firefox 64. Some of these bugs showed evidence of memory corruption a…

Fix: 65.0+
Fix from $2,300 2019-02-05
Firefox CRITICAL 9.8
CVE-2018-18504

A crash and out-of-bounds read can occur when the buffer of a texture client is freed while it is still in use during graphic operations. This result…

Fix: 65.0+
Fix from $2,300 2019-02-05
Firefox CRITICAL 9.8
CVE-2018-5186

Memory safety bugs present in Firefox 60. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of…

Fix: 61.0+
Fix from $2,300 2018-10-18
Firefox CRITICAL 9.8
CVE-2018-12369

WebExtensions bundled with embedded experiments were not correctly checked for proper authorization. This allowed a malicious WebExtension to gain fu…

Fix: 60.1.0 / 61.0+
Fix from $2,300 2018-10-18
Firefox CRITICAL 9.8
CVE-2018-5151

Memory safety bugs were reported in Firefox 59. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that s…

Fix: 60.0+
Fix from $2,300 2018-06-11
Firefox CRITICAL 9.8
CVE-2018-5116

WebExtensions with the "ActiveTab" permission are able to access frames hosted within the active tab even if the frames are cross-origin. Malicious e…

Fix: after 57.0.4
Fix from $2,300 2018-06-11
Firefox CRITICAL 9.8
CVE-2018-5122

A potential integer overflow in the "DoCrypt" function of WebCrypto was identified. If a means was found of exploiting it, it could result in an out-…

Fix: after 57.0.4
Fix from $2,300 2018-06-11
Firefox CRITICAL 9.8
CVE-2018-5126

Memory safety bugs were reported in Firefox 58. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that s…

Fix: 59.0+
Fix from $2,300 2018-06-11
Firefox CRITICAL 9.8
CVE-2018-5128

A use-after-free vulnerability can occur when manipulating elements, events, and selection ranges during editor operations. This results in a potenti…

Fix: 59.0+
Fix from $2,300 2018-06-11
Firefox CRITICAL 9.8
CVE-2018-5090

Memory safety bugs were reported in Firefox 57. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that s…

Fix: after 57.0.4
Fix from $2,300 2018-06-11
Firefox CRITICAL 9.8
CVE-2018-5092

A use-after-free vulnerability can occur when the thread for a Web Worker is freed from memory prematurely instead of from memory in the main thread …

Fix: after 57.0.4
Fix from $2,300 2018-06-11
Firefox CRITICAL 9.8
CVE-2017-7827

Memory safety bugs were reported in Firefox 56. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that s…

Fix: after 56.0.2
Fix from $2,300 2018-06-11