Vulnerability index

Browse CVEs

46 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
HIGH 7.5 CVE-2026-4684 Race condition, use-after-free in the Graphics: WebRender component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140… Firefox 115.34.0 / 140.9.0+ Fix from $1,9502026-03-24 HIGH 7.5 CVE-2025-13012 Race condition in the Graphics component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Firefox ESR 115.30, Thunderbird 145, and Th… Firefox 115.30.0 / 140.5.0+ Fix from $1,9502025-11-11 MEDIUM 6.5 CVE-2025-3608 A race condition existed in nsHttpTransaction that could have been exploited to cause memory corruption, potentially leading to an exploitable condit… Firefox 137.0.2+ Fix from $1,6002025-04-15 MEDIUM 6.5 CVE-2025-1013 A race condition could have led to private browsing tabs being opened in normal browsing windows. This could have resulted in a potential privacy lea… Firefox 128.7.0 / 135.0+ Fix from $1,6002025-02-04 MEDIUM 6.5 CVE-2024-11708 Missing thread synchronization primitives could have led to a data race on members of the PlaybackParams structure. This vulnerability affects Firefo… Firefox 133.0+ Fix from $1,6002024-11-26 MEDIUM 5.3 CVE-2024-10468 Potential race conditions in IndexedDB could have caused memory corruption, leading to a potentially exploitable crash. This vulnerability affects Fi… Firefox 132.0+ Fix from $1,6002024-10-29 MEDIUM 6.5 CVE-2024-9936 When manipulating the selection node cache, an attacker may have been able to cause unexpected behavior, potentially leading to an exploitable crash.… Firefox 131.0.3+ Fix from $1,6002024-10-14 HIGH 7.5 CVE-2024-0605 Using a javascript: URI with a setTimeout race condition, an attacker can execute unauthorized scripts on top origin sites in urlbar. This bypasses s… Firefox Focus 122.0+ Fix from $1,9502024-01-22 MEDIUM 5.3 CVE-2023-6857 When resolving a symlink, a race may occur where the buffer passed to `readlink` may actually be smaller than necessary. *This bug only affects Fire… Firefox 115.6 / 121.0+ Fix from $1,6002023-12-19 MEDIUM 5.9 CVE-2023-4049 Race conditions in reference counting code were found through code inspection. These could have resulted in potentially exploitable use-after-free vu… Firefox 102.14 / 115.1+ Fix from $1,6002023-08-01 HIGH 7.5 CVE-2023-29537 Multiple race conditions in the font initialization could have led to memory corruption and execution of attacker-controlled code. This vulnerability… Firefox 112.0+ Fix from $1,9502023-06-02 HIGH 7.1 CVE-2022-42930 If two Workers were simultaneously initializing their CacheStorage, a data race could have occurred in the `ThirdPartyUtil` component. This vulnerabi… Firefox 106.0+ Fix from $1,9502022-12-22 MEDIUM 5.3 CVE-2022-36318 When visiting directory listings for `chrome://` URLs as source text, some parameters were reflected. This vulnerability affects Firefox ESR < 102.1,… Firefox 91.12 / 102.1+ Fix from $1,6002022-12-22 HIGH 8.8 CVE-2022-22763 When a worker is shutdown, it was possible to cause script to run late in the lifecycle, at a point after where it should not be possible. This vulne… Firefox 91.6 / 96.0+ Fix from $1,9502022-12-22 MEDIUM 5.9 CVE-2022-22746 A race condition could have allowed bypassing the fullscreen notification which could have lead to a fullscreen window spoof being unnoticed.<br>*Thi… Firefox 91.5 / 96.0+ Fix from $1,6002022-12-22 HIGH 7.5 CVE-2022-22737 Constructing audio sinks could have lead to a race condition when playing audio files and closing windows. This could have lead to a use-after-free c… Firefox 91.5 / 96.0+ Fix from $1,9502022-12-22 HIGH 8.1 CVE-2021-29986 A suspected race condition when calling getaddrinfo led to memory corruption and a potentially exploitable crash. *Note: This issue only affected Lin… Firefox 78.13.0 / 91.0+ Fix from $1,9502021-08-17 HIGH 7.5 CVE-2021-29952 When Web Render components were destructed, a race condition could have caused undefined behavior, and we presume that with enough effort may have be… Firefox 88.0.1 / 88.1.3+ Fix from $1,9502021-06-24 HIGH 8.8 CVE-2020-15670 Mozilla developers reported memory safety bugs present in Firefox for Android 79. Some of these bugs showed evidence of memory corruption and we pres… Firefox 78.2 / 80.0+ Fix from $1,9502020-10-01 HIGH 8.8 CVE-2020-12416 A VideoStreamEncoder may have been freed in a race condition with VideoBroadcaster::AddOrUpdateSink, resulting in a use-after-free, memory corruption… Firefox 78.0+ Fix from $1,9502020-07-09 HIGH 8.8 CVE-2020-12420 When trying to connect to a STUN server, a race condition could have caused a use-after-free of a pointer, leading to memory corruption and a potenti… Firefox 68.10.0 / 78.0+ Fix from $1,9502020-07-09 MEDIUM 5.3 CVE-2020-12405 When browsing a malicious page, a race condition in our SharedWorkerService could occur and lead to a potentially exploitable crash. This vulnerabili… Firefox 68.9.0 / 77.0+ Fix from $1,6002020-07-09 HIGH 8.1 CVE-2020-12387 A race condition when running shutdown code for Web Worker led to a use-after-free vulnerability. This resulted in a potentially exploitable crash. T… Firefox 68.8.0 / 76.0+ Fix from $1,9502020-05-26 HIGH 8.1 CVE-2020-6819 KEV Under certain conditions, when running the nsDocShell destructor, a race condition can cause a use-after-free. We are aware of targeted attacks in th… Firefox 68.6.1 / 68.7.0+ Fix from $1,9502020-04-24 HIGH 8.1 CVE-2020-6820 KEVEPSS 6% Under certain conditions, when handling a ReadableStream, a race condition can cause a use-after-free. We are aware of targeted attacks in the wild a… Firefox 68.6.1 / 68.7.0+ Fix from $1,9502020-04-24 MEDIUM 5.3 CVE-2019-17021 During the initialization of a new content process, a race condition occurs that can allow a content process to disclose heap addresses from the pare… Firefox 68.4 / 72.0+ Fix from $1,6002020-01-08 HIGH 7.5 CVE-2019-17010 Under certain conditions, when checking the Resist Fingerprinting preference during device orientation checks, a race condition could have caused a u… Firefox 68.3 / 71.0+ Fix from $1,9502020-01-08 HIGH 7.5 CVE-2019-17011 Under certain conditions, when retrieving a document from a DocShell in the antitracking code, a race condition could cause a use-after-free conditio… Firefox 68.3 / 71.0+ Fix from $1,9502020-01-08 MEDIUM 5.4 CVE-2019-11761 By using a form with a data URI it was possible to gain access to the privileged JSONView object that had been cloned into content. Impact from expos… Firefox 68.2 / 70.0+ Fix from $1,6002020-01-08 HIGH 7.0 CVE-2019-11736 The Mozilla Maintenance Service does not guard against files being hardlinked to another file in the updates directory, allowing for the replacement … Firefox 68.1.0 / 69.0+ Fix from $1,9502019-09-27