Vulnerability index

Browse CVEs

113 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Firefox HIGH 7.5
CVE-2012-0454

Use-after-free vulnerability in Mozilla Firefox 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird 5.0 through 10.0, Thunderbird ESR 10.x …

Fix: after 2.7
Fix from $1,950 2012-03-14
Firefox HIGH 7.5
CVE-2012-0452

Use-after-free vulnerability in Mozilla Firefox 10.x before 10.0.1, Thunderbird 10.x before 10.0.1, and SeaMonkey 2.7 allows remote attackers to caus…

Mitigation only
Fix from $1,950 2012-02-11
Firefox HIGH 7.5
CVE-2011-3661

YARR, as used in Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and SeaMonkey before 2.6, allows remote attackers to cause a denial of…

Fix: after 2.5
Fix from $1,950 2011-12-21
Firefox HIGH 7.5
CVE-2011-3665

Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and SeaMonkey before 2.6 allow remote attackers to cause a denial of service (applicati…

Fix: after 2.5
Fix from $1,950 2011-12-21
Firefox HIGH 7.5
CVE-2011-3658EPSS 70%

The SVG implementation in Mozilla Firefox 8.0, Thunderbird 8.0, and SeaMonkey 2.5 does not properly interact with DOMAttrModified event handlers, whi…

Mitigation only
Fix from $1,950 2011-12-21
Firefox HIGH 10.0
CVE-2011-2363EPSS 6%

Use-after-free vulnerability in the nsSVGPointList::AppendElement function in the implementation of SVG element lists in Mozilla Firefox before 3.6.1…

Fix: after 3.6.17
Fix from $1,950 2011-06-30
Firefox HIGH 7.6
CVE-2011-2373

Use-after-free vulnerability in Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14, when Ja…

Fix: after 3.6.17
Fix from $1,950 2011-06-30
Firefox HIGH 10.0
CVE-2011-0083EPSS 6%

Use-after-free vulnerability in the nsSVGPathSegList::ReplaceItem function in the implementation of SVG element lists in Mozilla Firefox before 3.6.1…

Fix: after 3.6.17
Fix from $1,950 2011-06-30
Firefox HIGH 10.0
CVE-2011-0085EPSS 6%

Use-after-free vulnerability in the nsXULCommandDispatcher function in Mozilla Firefox before 3.6.18, Thunderbird before 3.1.11, and SeaMonkey throug…

Fix: after 3.6.17
Fix from $1,950 2011-06-30
Firefox HIGH 10.0
CVE-2011-0066

Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allows remote attackers to execut…

Fix: after 2.0.13
Fix from $1,950 2011-05-07
Firefox HIGH 10.0
CVE-2011-0065EPSS 74%

Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allows remote attackers to execut…

Fix: after 2.0.13
Fix from $1,950 2011-05-07
Firefox HIGH 10.0
CVE-2011-0055EPSS 7%

Use-after-free vulnerability in the JSON.stringify method in js3250.dll in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey befor…

Fix: after 2.0.11
Fix from $1,950 2011-03-02
Firefox HIGH 10.0
CVE-2011-0057

Use-after-free vulnerability in the Web Workers implementation in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12,…

Fix: after 2.0.11
Fix from $1,950 2011-03-02
Firefox HIGH 9.3
CVE-2010-3766EPSS 7%

Use-after-free vulnerability in Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, allows remote attackers to execut…

Fix: after 3.5.15
Fix from $1,950 2010-12-10
Firefox HIGH 9.3
CVE-2010-3180

Use-after-free vulnerability in the nsBarProp function in Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x b…

Fix: after 3.5.13
Fix from $1,950 2010-10-21
Firefox HIGH 9.3
CVE-2010-2760

Use-after-free vulnerability in the nsTreeSelection function in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.…

Fix: after 3.5.11
Fix from $1,950 2010-09-09
Firefox HIGH 9.3
CVE-2010-2767

The navigator.plugins implementation in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and Se…

Fix: after 3.5.11
Fix from $1,950 2010-09-09
Firefox HIGH 9.3
CVE-2010-3167EPSS 7%

The nsTreeContentView function in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonke…

Fix: after 3.5.11
Fix from $1,950 2010-09-09
Firefox HIGH 9.3
CVE-2010-1209EPSS 5%

Use-after-free vulnerability in the NodeIterator implementation in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, and SeaMonkey before 2…

Fix: after 2.0.5
Fix from $1,950 2010-07-30
Firefox HIGH 10.0
CVE-2010-2755

layout/generic/nsObjectFrame.cpp in Mozilla Firefox 3.6.7 does not properly free memory in the parameter array of a plugin instance, which allows rem…

Mitigation only
Fix from $1,950 2010-07-30
Firefox HIGH 9.3
CVE-2010-0183

Use-after-free vulnerability in the nsCycleCollector::MarkRoots function in Mozilla Firefox 3.5.x before 3.5.10 and SeaMonkey before 2.0.5 allows rem…

Fix: after 2.0.4
Fix from $1,950 2010-06-24
Firefox HIGH 9.3
CVE-2010-1198

Use-after-free vulnerability in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, and SeaMonkey before 2.0.5, allows remote attackers to ex…

Fix: after 2.0.4
Fix from $1,950 2010-06-24
Firefox MEDIUM 5.0
CVE-2010-1986

Mozilla Firefox 3.6.3 on Windows XP SP3 allows remote attackers to cause a denial of service (memory consumption and application crash) via JavaScrip…

No fix yet
Fix from $1,600 2010-05-20
Firefox MEDIUM 5.0
CVE-2010-1987

Mozilla Firefox 3.6.3 on Windows XP SP3 allows remote attackers to cause a denial of service (memory consumption, out-of-bounds read, and application…

No fix yet
Fix from $1,600 2010-05-20
Firefox MEDIUM 5.0
CVE-2010-1990

Mozilla Firefox 3.6.x, 3.5.x, 3.0.19, and earlier, and SeaMonkey, executes a mail application in situations where an IFRAME element has a mailto: URL…

Fix: after 3.0.19
Fix from $1,600 2010-05-20
Firefox HIGH 9.3
CVE-2010-0175EPSS 7%

Use-after-free vulnerability in the nsTreeSelection implementation in Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.9, Thunderbird before 3.0.4,…

Fix: after 3.0.17
Fix from $1,950 2010-04-05
Firefox HIGH 9.3
CVE-2010-0176EPSS 5%

Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2; Thunderbird before 3.0.4; and SeaMonkey before 2.0.4 do not properly manag…

Fix: after 3.5.7
Fix from $1,950 2010-04-05
Firefox HIGH 9.3
CVE-2010-0177EPSS 7%

Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2, and SeaMonkey before 2.0.4, frees the contents of the window.navigator.plu…

Fix: after 3.0.17
Fix from $1,950 2010-04-05
Firefox HIGH 9.3
CVE-2010-0164EPSS 6%

Use-after-free vulnerability in the imgContainer::InternalAddFrameHelper function in src/imgContainer.cpp in libpr0n in Mozilla Firefox 3.6 before 3.…

No fix yet
Fix from $1,950 2010-03-25
Firefox HIGH 10.0
CVE-2010-0160EPSS 6%

The Web Worker functionality in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly handle arra…

Fix: after 3.0.17
Fix from $1,950 2010-02-22