Vulnerability index

Browse CVEs

113 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Firefox MEDIUM 5.0
CVE-2008-5502

The layout engine in Mozilla Firefox 3.x before 3.0.5, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 allows remote attackers to ca…

Fix: 1.1.14 / 2.0.0.19+
Fix from $1,600 2008-12-17
Firefox HIGH 10.0
CVE-2008-5018

The JavaScript engine in Mozilla Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1…

Fix: 1.1.13 / 2.0.0.18+
Fix from $1,950 2008-11-13
Firefox HIGH 10.0
CVE-2008-5052

The AppendAttributeValue function in the JavaScript engine in Mozilla Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x…

Fix: 2.0.0.18+
Fix from $1,950 2008-11-13
Firefox HIGH 9.3
CVE-2008-5013

Mozilla Firefox 2.x before 2.0.0.18 and SeaMonkey 1.x before 1.1.13 do not properly check when the Flash module has been dynamically unloaded properl…

Fix: after 2.0.0.17
Fix from $1,950 2008-11-13
Firefox MEDIUM 5.0
CVE-2008-5016

The layout engine in Mozilla Firefox 3.x before 3.0.4, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows remote attackers to ca…

Fix: after 3.0.3
Fix from $1,600 2008-11-13
Firefox MEDIUM 5.0
CVE-2008-4324EPSS 9%

The user interface event dispatcher in Mozilla Firefox 3.0.3 on Windows XP SP2 allows remote attackers to cause a denial of service (NULL pointer der…

No fix yet
Fix from $1,600 2008-09-29
Firefox HIGH 10.0
CVE-2008-4062

Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.1…

Fix: 1.1.12 / 2.0.0.17+
Fix from $1,950 2008-09-24
Firefox HIGH 10.0
CVE-2008-4064

Multiple unspecified vulnerabilities in Mozilla Firefox 3.x before 3.0.2 allow remote attackers to cause a denial of service (memory corruption and a…

Fix: after 3.0.1
Fix from $1,950 2008-09-24
Firefox HIGH 10.0
CVE-2008-2798EPSS 14%

Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 allow remote a…

Fix: after 2.0.0.14
Fix from $1,950 2008-07-07
Firefox HIGH 10.0
CVE-2008-2799EPSS 6%

Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 allow remote a…

Fix: after 2.0.0.14
Fix from $1,950 2008-07-07
Firefox HIGH 10.0
CVE-2008-2811EPSS 7%

The block reflow implementation in Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 allows remote attac…

Fix: after 2.0.0.14
Fix from $1,950 2008-07-07
Firefox MEDIUM 5.0
CVE-2008-2014

Mozilla Firefox 3.0 beta 5 allows remote attackers to cause a denial of service (application crash) via JavaScript code that calls document.write in …

Mitigation only
Fix from $1,600 2008-04-30
Firefox HIGH 9.3
CVE-2008-1380

The JavaScript engine in Mozilla Firefox before 2.0.0.14, Thunderbird before 2.0.0.14, and SeaMonkey before 1.1.10 allows remote attackers to cause a…

Fix: after 2.0.0.13
Fix from $1,950 2008-04-17
Firefox MEDIUM 6.8
CVE-2008-1236

Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.13, Thunderbird before 2.0.0.13, and SeaMonkey before 1.1.9 allow remote attacke…

Fix: after 2.0.0.12
Fix from $1,600 2008-03-27
Firefox MEDIUM 6.8
CVE-2008-1237

Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.13, Thunderbird before 2.0.0.13, and SeaMonkey before 1.1.9 allow remote attacke…

Fix: after 2.0.0.12
Fix from $1,600 2008-03-27
Firefox HIGH 9.3
CVE-2008-0412

The browser engine in Mozilla Firefox before 2.0.0.12, Thunderbird before 2.0.0.12, and SeaMonkey before 1.1.8 allows remote attackers to cause a den…

Fix: after 2.0.0.11
Fix from $1,950 2008-02-08
Firefox HIGH 9.3
CVE-2008-0413

The JavaScript engine in Mozilla Firefox before 2.0.0.12, Thunderbird before 2.0.0.12, and SeaMonkey before 1.1.8 allows remote attackers to cause a …

Fix: after 2.0.0.11
Fix from $1,950 2008-02-08
Firefox HIGH 9.3
CVE-2008-0419

Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows remote attackers to steal navigation history and cause a denial of service (crash) …

Fix: after 2.0.0.11
Fix from $1,950 2008-02-08
Firefox HIGH 7.1
CVE-2007-5896

Mozilla Firefox 2.0.0.9 allows remote attackers to cause a denial of service (CPU consumption and crash) via an iframe with Javascript that sets the …

Mitigation only
Fix from $1,950 2007-11-08
Firefox MEDIUM 5.1
CVE-2006-1993EPSS 54%

Mozilla Firefox 1.5.0.2, when designMode is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code via cer…

Patch available
Fix from $1,600 2006-04-25
Firefox HIGH 10.0
CVE-2006-1790EPSS 5%

A regression fix in Mozilla Firefox 1.0.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the In…

Mitigation only
Fix from $1,950 2006-04-14
Firefox HIGH 9.3
CVE-2006-0748EPSS 8%

Mozilla Firefox and Thunderbird 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0.1 allows remote atta…

Mitigation only
Fix from $1,950 2006-04-14
Firefox HIGH 9.3
CVE-2006-0749EPSS 10%

nsHTMLContentSink.cpp in Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0…

Fix: 1.0 / 1.0.8+
Fix from $1,950 2006-04-14