Vulnerability index

Browse CVEs

46 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Firefox HIGH 7.5
CVE-2026-4684

Race condition, use-after-free in the Graphics: WebRender component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140…

Fix: 115.34.0 / 140.9.0+
Fix from $1,950 2026-03-24
Firefox HIGH 7.5
CVE-2025-13012

Race condition in the Graphics component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Firefox ESR 115.30, Thunderbird 145, and Th…

Fix: 115.30.0 / 140.5.0+
Fix from $1,950 2025-11-11
Firefox MEDIUM 6.5
CVE-2025-3608

A race condition existed in nsHttpTransaction that could have been exploited to cause memory corruption, potentially leading to an exploitable condit…

Fix: 137.0.2+
Fix from $1,600 2025-04-15
Firefox MEDIUM 6.5
CVE-2025-1013

A race condition could have led to private browsing tabs being opened in normal browsing windows. This could have resulted in a potential privacy lea…

Fix: 128.7.0 / 135.0+
Fix from $1,600 2025-02-04
Firefox MEDIUM 6.5
CVE-2024-11708

Missing thread synchronization primitives could have led to a data race on members of the PlaybackParams structure. This vulnerability affects Firefo…

Fix: 133.0+
Fix from $1,600 2024-11-26
Firefox MEDIUM 5.3
CVE-2024-10468

Potential race conditions in IndexedDB could have caused memory corruption, leading to a potentially exploitable crash. This vulnerability affects Fi…

Fix: 132.0+
Fix from $1,600 2024-10-29
Firefox MEDIUM 6.5
CVE-2024-9936

When manipulating the selection node cache, an attacker may have been able to cause unexpected behavior, potentially leading to an exploitable crash.…

Fix: 131.0.3+
Fix from $1,600 2024-10-14
Firefox Focus HIGH 7.5
CVE-2024-0605

Using a javascript: URI with a setTimeout race condition, an attacker can execute unauthorized scripts on top origin sites in urlbar. This bypasses s…

Fix: 122.0+
Fix from $1,950 2024-01-22
Firefox MEDIUM 5.3
CVE-2023-6857

When resolving a symlink, a race may occur where the buffer passed to `readlink` may actually be smaller than necessary. *This bug only affects Fire…

Fix: 115.6 / 121.0+
Fix from $1,600 2023-12-19
Firefox MEDIUM 5.9
CVE-2023-4049

Race conditions in reference counting code were found through code inspection. These could have resulted in potentially exploitable use-after-free vu…

Fix: 102.14 / 115.1+
Fix from $1,600 2023-08-01
Firefox HIGH 7.5
CVE-2023-29537

Multiple race conditions in the font initialization could have led to memory corruption and execution of attacker-controlled code. This vulnerability…

Fix: 112.0+
Fix from $1,950 2023-06-02
Firefox HIGH 7.1
CVE-2022-42930

If two Workers were simultaneously initializing their CacheStorage, a data race could have occurred in the `ThirdPartyUtil` component. This vulnerabi…

Fix: 106.0+
Fix from $1,950 2022-12-22
Firefox MEDIUM 5.3
CVE-2022-36318

When visiting directory listings for `chrome://` URLs as source text, some parameters were reflected. This vulnerability affects Firefox ESR < 102.1,…

Fix: 91.12 / 102.1+
Fix from $1,600 2022-12-22
Firefox HIGH 8.8
CVE-2022-22763

When a worker is shutdown, it was possible to cause script to run late in the lifecycle, at a point after where it should not be possible. This vulne…

Fix: 91.6 / 96.0+
Fix from $1,950 2022-12-22
Firefox MEDIUM 5.9
CVE-2022-22746

A race condition could have allowed bypassing the fullscreen notification which could have lead to a fullscreen window spoof being unnoticed.<br>*Thi…

Fix: 91.5 / 96.0+
Fix from $1,600 2022-12-22
Firefox HIGH 7.5
CVE-2022-22737

Constructing audio sinks could have lead to a race condition when playing audio files and closing windows. This could have lead to a use-after-free c…

Fix: 91.5 / 96.0+
Fix from $1,950 2022-12-22
Firefox HIGH 8.1
CVE-2021-29986

A suspected race condition when calling getaddrinfo led to memory corruption and a potentially exploitable crash. *Note: This issue only affected Lin…

Fix: 78.13.0 / 91.0+
Fix from $1,950 2021-08-17
Firefox HIGH 7.5
CVE-2021-29952

When Web Render components were destructed, a race condition could have caused undefined behavior, and we presume that with enough effort may have be…

Fix: 88.0.1 / 88.1.3+
Fix from $1,950 2021-06-24
Firefox HIGH 8.8
CVE-2020-15670

Mozilla developers reported memory safety bugs present in Firefox for Android 79. Some of these bugs showed evidence of memory corruption and we pres…

Fix: 78.2 / 80.0+
Fix from $1,950 2020-10-01
Firefox HIGH 8.8
CVE-2020-12416

A VideoStreamEncoder may have been freed in a race condition with VideoBroadcaster::AddOrUpdateSink, resulting in a use-after-free, memory corruption…

Fix: 78.0+
Fix from $1,950 2020-07-09
Firefox HIGH 8.8
CVE-2020-12420

When trying to connect to a STUN server, a race condition could have caused a use-after-free of a pointer, leading to memory corruption and a potenti…

Fix: 68.10.0 / 78.0+
Fix from $1,950 2020-07-09
Firefox MEDIUM 5.3
CVE-2020-12405

When browsing a malicious page, a race condition in our SharedWorkerService could occur and lead to a potentially exploitable crash. This vulnerabili…

Fix: 68.9.0 / 77.0+
Fix from $1,600 2020-07-09
Firefox HIGH 8.1
CVE-2020-12387

A race condition when running shutdown code for Web Worker led to a use-after-free vulnerability. This resulted in a potentially exploitable crash. T…

Fix: 68.8.0 / 76.0+
Fix from $1,950 2020-05-26
Firefox HIGH 8.1
CVE-2020-6819 KEV

Under certain conditions, when running the nsDocShell destructor, a race condition can cause a use-after-free. We are aware of targeted attacks in th…

Fix: 68.6.1 / 68.7.0+
Fix from $1,950 2020-04-24
Firefox HIGH 8.1
CVE-2020-6820 KEVEPSS 6%

Under certain conditions, when handling a ReadableStream, a race condition can cause a use-after-free. We are aware of targeted attacks in the wild a…

Fix: 68.6.1 / 68.7.0+
Fix from $1,950 2020-04-24
Firefox MEDIUM 5.3
CVE-2019-17021

During the initialization of a new content process, a race condition occurs that can allow a content process to disclose heap addresses from the pare…

Fix: 68.4 / 72.0+
Fix from $1,600 2020-01-08
Firefox HIGH 7.5
CVE-2019-17010

Under certain conditions, when checking the Resist Fingerprinting preference during device orientation checks, a race condition could have caused a u…

Fix: 68.3 / 71.0+
Fix from $1,950 2020-01-08
Firefox HIGH 7.5
CVE-2019-17011

Under certain conditions, when retrieving a document from a DocShell in the antitracking code, a race condition could cause a use-after-free conditio…

Fix: 68.3 / 71.0+
Fix from $1,950 2020-01-08
Firefox MEDIUM 5.4
CVE-2019-11761

By using a form with a data URI it was possible to gain access to the privileged JSONView object that had been cloned into content. Impact from expos…

Fix: 68.2 / 70.0+
Fix from $1,600 2020-01-08
Firefox HIGH 7.0
CVE-2019-11736

The Mozilla Maintenance Service does not guard against files being hardlinked to another file in the updates directory, allowing for the replacement …

Fix: 68.1.0 / 69.0+
Fix from $1,950 2019-09-27