Vulnerability index

Browse CVEs

24 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
HIGH 7.5 CVE-2026-16376 Denial-of-service in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 153 and Thunderbird 153. Firefox 153.0 / 153.0.0+ Fix from $1,9502026-07-21 MEDIUM 5.3 CVE-2026-57962 A malicious LDAP server, which a Thunderbird user is configured to query for address-book autocomplete, can stash arbitrarily large amounts of attack… Thunderbird 140.12.1 / 152.0.1+ Fix from $1,6002026-07-01 MEDIUM 6.5 CVE-2026-12325 Denial-of-service in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbi… Firefox 115.37.0 / 140.12.0+ Fix from $1,6002026-06-16 MEDIUM 6.5 CVE-2026-12319 Denial-of-service in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 152 and Thunderbird 152. Firefox 152.0.0+ Fix from $1,6002026-06-16 HIGH 7.5 CVE-2026-8968 Denial-of-service due to invalid pointer in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, T… Firefox 140.11 / 140.11.0+ Fix from $1,9502026-05-19 HIGH 7.5 CVE-2026-6780 Denial-of-service in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. Firefox 150.0+ Fix from $1,9502026-04-21 HIGH 7.5 CVE-2026-6781 Denial-of-service in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. Firefox 150.0+ Fix from $1,9502026-04-21 MEDIUM 5.3 CVE-2026-6777 Other issue in the Networking: DNS component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. Firefox 150.0+ Fix from $1,6002026-04-21 HIGH 7.5 CVE-2026-4726 Denial-of-service in the XML component. This vulnerability was fixed in Firefox 149 and Thunderbird 149. Firefox 149.0+ Fix from $1,9502026-03-24 HIGH 7.5 CVE-2026-4727 Denial-of-service in the Libraries component in NSS. This vulnerability was fixed in Firefox 149 and Thunderbird 149. Firefox 149.0+ Fix from $1,9502026-03-24 HIGH 7.5 CVE-2026-4704 Denial-of-service in the WebRTC: Signaling component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunderbir… Firefox 140.9.0 / 149.0+ Fix from $1,9502026-03-24 HIGH 7.5 CVE-2026-0889 Denial-of-service in the DOM: Service Workers component. This vulnerability was fixed in Firefox 147 and Thunderbird 147. Firefox 147.0+ Fix from $1,9502026-01-13 HIGH 7.5 CVE-2025-66453 Rhino is an open-source implementation of JavaScript written entirely in Java. Prior to 1.8.1, 1.7.15.1, and 1.7.14.1, when an application passed an … Rhino 1.7.14.1+ Fix from $1,9502025-12-03 HIGH 7.5 CVE-2025-9182 Denial-of-service due to out-of-memory in the Graphics: WebRender component. This vulnerability was fixed in Firefox 142, Firefox ESR 140.2, Thunderb… Firefox 140.2.0 / 142.0+ Fix from $1,9502025-08-19 HIGH 7.5 CVE-2025-55029 Malicious scripts could bypass the popup blocker to spam new tabs, potentially resulting in denial of service attacks. This vulnerability was fixed i… Firefox 142.0+ Fix from $1,9502025-08-19 MEDIUM 6.5 CVE-2025-55028 Malicious scripts utilizing repetitive JavaScript alerts could prevent client user interaction in some scenarios and allow for denial of service atta… Firefox 142.0+ Fix from $1,6002025-08-19 HIGH 7.5 CVE-2024-10466 By sending a specially crafted push message, a remote server could have hung the parent process, causing the browser to become unresponsive. This vul… Firefox 128.4.0 / 132.0+ Fix from $1,9502024-10-29 HIGH 7.5 CVE-2023-5724 Drivers are not always robust to extremely large draw calls and in some cases this scenario could have led to a crash. This vulnerability affects Fir… Firefox 115.4 / 115.4.1+ Fix from $1,9502023-10-25 MEDIUM 6.5 CVE-2023-29544 If multiple instances of resource exhaustion occurred at the incorrect time, the garbage collector could have caused memory corruption and a potentia… Firefox 112.0+ Fix from $1,6002023-06-02 MEDIUM 6.5 CVE-2023-0616 If a MIME email combines OpenPGP and OpenPGP MIME data in a certain way Thunderbird repeatedly attempts to process and display the message, which cou… Thunderbird 102.8+ Fix from $1,6002023-06-02 MEDIUM 6.5 CVE-2022-42929 If a website called `window.print()` in a particular way, it could cause a denial of service of the browser, which may persist beyond browser restart… Firefox 102.4 / 106.0+ Fix from $1,6002022-12-22 HIGH 7.5 CVE-2022-29167 Hawk is an HTTP authentication scheme providing mechanisms for making authenticated HTTP requests with partial cryptographic verification of the requ… Hawk 9.0.1+ Fix from $1,9502022-05-05 MEDIUM 5.0 CVE-2014-1500 Mozilla Firefox before 28.0 and SeaMonkey before 2.25 allow remote attackers to cause a denial of service (resource consumption and application hang)… Firefox 2.25 / 28.0+ Fix from $1,6002014-03-19 MEDIUM 5.0 CVE-2007-1377EPSS 17% AcroPDF.DLL in Adobe Reader 8.0, when accessed from Mozilla Firefox, Netscape, or Opera, allows remote attackers to cause a denial of service (unspec… Firefox No fix yet Fix from $1,6002007-03-10