Vulnerability index

Browse CVEs

24 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
Firefox HIGH 7.5
CVE-2026-16376

Denial-of-service in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.

Fix: 153.0 / 153.0.0+
Fix from $1,950 2026-07-21
Thunderbird MEDIUM 5.3
CVE-2026-57962

A malicious LDAP server, which a Thunderbird user is configured to query for address-book autocomplete, can stash arbitrarily large amounts of attack…

Fix: 140.12.1 / 152.0.1+
Fix from $1,600 2026-07-01
Firefox MEDIUM 6.5
CVE-2026-12325

Denial-of-service in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbi…

Fix: 115.37.0 / 140.12.0+
Fix from $1,600 2026-06-16
Firefox MEDIUM 6.5
CVE-2026-12319

Denial-of-service in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 152 and Thunderbird 152.

Fix: 152.0.0+
Fix from $1,600 2026-06-16
Firefox HIGH 7.5
CVE-2026-8968

Denial-of-service due to invalid pointer in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, T…

Fix: 140.11 / 140.11.0+
Fix from $1,950 2026-05-19
Firefox HIGH 7.5
CVE-2026-6780

Denial-of-service in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.

Fix: 150.0+
Fix from $1,950 2026-04-21
Firefox HIGH 7.5
CVE-2026-6781

Denial-of-service in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.

Fix: 150.0+
Fix from $1,950 2026-04-21
Firefox MEDIUM 5.3
CVE-2026-6777

Other issue in the Networking: DNS component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.

Fix: 150.0+
Fix from $1,600 2026-04-21
Firefox HIGH 7.5
CVE-2026-4726

Denial-of-service in the XML component. This vulnerability was fixed in Firefox 149 and Thunderbird 149.

Fix: 149.0+
Fix from $1,950 2026-03-24
Firefox HIGH 7.5
CVE-2026-4727

Denial-of-service in the Libraries component in NSS. This vulnerability was fixed in Firefox 149 and Thunderbird 149.

Fix: 149.0+
Fix from $1,950 2026-03-24
Firefox HIGH 7.5
CVE-2026-4704

Denial-of-service in the WebRTC: Signaling component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunderbir…

Fix: 140.9.0 / 149.0+
Fix from $1,950 2026-03-24
Firefox HIGH 7.5
CVE-2026-0889

Denial-of-service in the DOM: Service Workers component. This vulnerability was fixed in Firefox 147 and Thunderbird 147.

Fix: 147.0+
Fix from $1,950 2026-01-13
Rhino HIGH 7.5
CVE-2025-66453

Rhino is an open-source implementation of JavaScript written entirely in Java. Prior to 1.8.1, 1.7.15.1, and 1.7.14.1, when an application passed an …

Fix: 1.7.14.1+
Fix from $1,950 2025-12-03
Firefox HIGH 7.5
CVE-2025-9182

Denial-of-service due to out-of-memory in the Graphics: WebRender component. This vulnerability was fixed in Firefox 142, Firefox ESR 140.2, Thunderb…

Fix: 140.2.0 / 142.0+
Fix from $1,950 2025-08-19
Firefox HIGH 7.5
CVE-2025-55029

Malicious scripts could bypass the popup blocker to spam new tabs, potentially resulting in denial of service attacks. This vulnerability was fixed i…

Fix: 142.0+
Fix from $1,950 2025-08-19
Firefox MEDIUM 6.5
CVE-2025-55028

Malicious scripts utilizing repetitive JavaScript alerts could prevent client user interaction in some scenarios and allow for denial of service atta…

Fix: 142.0+
Fix from $1,600 2025-08-19
Firefox HIGH 7.5
CVE-2024-10466

By sending a specially crafted push message, a remote server could have hung the parent process, causing the browser to become unresponsive. This vul…

Fix: 128.4.0 / 132.0+
Fix from $1,950 2024-10-29
Firefox HIGH 7.5
CVE-2023-5724

Drivers are not always robust to extremely large draw calls and in some cases this scenario could have led to a crash. This vulnerability affects Fir…

Fix: 115.4 / 115.4.1+
Fix from $1,950 2023-10-25
Firefox MEDIUM 6.5
CVE-2023-29544

If multiple instances of resource exhaustion occurred at the incorrect time, the garbage collector could have caused memory corruption and a potentia…

Fix: 112.0+
Fix from $1,600 2023-06-02
Thunderbird MEDIUM 6.5
CVE-2023-0616

If a MIME email combines OpenPGP and OpenPGP MIME data in a certain way Thunderbird repeatedly attempts to process and display the message, which cou…

Fix: 102.8+
Fix from $1,600 2023-06-02
Firefox MEDIUM 6.5
CVE-2022-42929

If a website called `window.print()` in a particular way, it could cause a denial of service of the browser, which may persist beyond browser restart…

Fix: 102.4 / 106.0+
Fix from $1,600 2022-12-22
Hawk HIGH 7.5
CVE-2022-29167

Hawk is an HTTP authentication scheme providing mechanisms for making authenticated HTTP requests with partial cryptographic verification of the requ…

Fix: 9.0.1+
Fix from $1,950 2022-05-05
Firefox MEDIUM 5.0
CVE-2014-1500

Mozilla Firefox before 28.0 and SeaMonkey before 2.25 allow remote attackers to cause a denial of service (resource consumption and application hang)…

Fix: 2.25 / 28.0+
Fix from $1,600 2014-03-19
Firefox MEDIUM 5.0
CVE-2007-1377EPSS 17%

AcroPDF.DLL in Adobe Reader 8.0, when accessed from Mozilla Firefox, Netscape, or Opera, allows remote attackers to cause a denial of service (unspec…

No fix yet
Fix from $1,600 2007-03-10