Vulnerability index

Browse CVEs

8 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Link Following (Symlink)CWE-59 × clear
Firefox MEDIUM 6.5
CVE-2023-4052

The Firefox updater created a directory writable by non-privileged users. When uninstalling Firefox, any files in that directory would be recursively…

Fix: 115.1 / 116.0+
Fix from $1,600 2023-08-01
Firefox MEDIUM 6.5
CVE-2023-4053

A website could have obscured the full screen notification by using a URL with a scheme handled by an external program, such as a mailto URL. This co…

Fix: 116.0+
Fix from $1,600 2023-08-01
Firefox MEDIUM 6.5
CVE-2023-37206

Uploading files which contain symlinks may have allowed an attacker to trick a user into submitting sensitive data to a malicious website. This vulne…

Fix: 115.0+
Fix from $1,600 2023-07-05
Firefox HIGH 8.8
CVE-2022-45412

When resolving a symlink such as <code>file:///proc/self/fd/1</code>, an error message may be produced where the symlink was resolved to a string con…

Fix: 102.5 / 107.0+
Fix from $1,950 2022-12-22
Firefox MEDIUM 5.3
CVE-2018-5107

The printing process can bypass local access protections to read files available through symlinks, bypassing local file restrictions. The printing pr…

Fix: after 57.0.4
Fix from $1,600 2018-06-11
Firefox MEDIUM 5.1
CVE-2009-0356

Mozilla Firefox before 3.0.6 and SeaMonkey do not block links to the (1) about:plugins and (2) about:config URIs from .desktop files, which allows us…

Fix: after 3.0.5
Fix from $1,600 2009-02-04
Firefox MEDIUM 6.5
CVE-2005-0587

Firefox before 1.0.1 and Mozilla before 1.7.6 allows remote malicious web sites to overwrite arbitrary files by tricking the user into downloading a …

Fix: 1.0.1 / 1.7.6+
Fix from $1,600 2005-03-25
Firefox MEDIUM 5.0
CVE-2003-1492

Netscape Navigator 7.0.2 and Mozilla allows remote attackers to access cookie information in a different domain via an HTTP request for a domain with…

No fix yet
Fix from $1,600 2003-12-31