Vulnerability index

Browse CVEs

2,886 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Firefox Esr HIGH 8.8
CVE-2021-38495

Mozilla developers reported memory safety bugs present in Thunderbird 78.13.0. Some of these bugs showed evidence of memory corruption and we presume…

Fix: 91.1+
Fix from $1,950 2021-11-03
Firefox HIGH 8.8
CVE-2021-38496

During operations on MessageTasks, a task may have been removed while it was still scheduled, resulting in memory corruption and a potentially exploi…

Fix: 78.15 / 91.2+
Fix from $1,950 2021-11-03
Firefox HIGH 8.8
CVE-2021-38499

Mozilla developers reported memory safety bugs present in Firefox 92. Some of these bugs showed evidence of memory corruption and we presume that wit…

Fix: 93.0+
Fix from $1,950 2021-11-03
Firefox HIGH 8.8
CVE-2021-38500

Mozilla developers reported memory safety bugs present in Firefox 92 and Firefox ESR 91.1. Some of these bugs showed evidence of memory corruption an…

Fix: 78.15 / 91.2+
Fix from $1,950 2021-11-03
Firefox HIGH 8.8
CVE-2021-38501

Mozilla developers reported memory safety bugs present in Firefox 92 and Firefox ESR 91.1. Some of these bugs showed evidence of memory corruption an…

Fix: 91.2 / 93.0+
Fix from $1,950 2021-11-03
Firefox HIGH 8.1
CVE-2021-29991

Firefox incorrectly accepted a newline in a HTTP/3 header, interpretting it as two separate headers. This allowed for a header splitting attack again…

Fix: 91.0.1+
Fix from $1,950 2021-11-03
Firefox Mobile HIGH 8.1
CVE-2021-29993

Firefox for Android allowed navigations through the `intent://` protocol, which could be used to cause crashes and UI spoofs. *This bug only affects …

Fix: 92.0+
Fix from $1,950 2021-11-03
Firefox HIGH 7.5
CVE-2021-38498

During process shutdown, a document could have caused a use-after-free of a languages service object, leading to memory corruption and a potentially …

Fix: 91.2 / 93.0+
Fix from $1,950 2021-11-03
Firefox MEDIUM 6.5
CVE-2021-38491

Mixed-content checks were unable to analyze opaque origins which led to some mixed content being loaded. This vulnerability affects Firefox < 92.

Fix: 92.0+
Fix from $1,600 2021-11-03
Firefox MEDIUM 6.5
CVE-2021-38492

When delegating navigations to the operating system, Firefox would accept the `mk` scheme which might allow attackers to launch pages and execute scr…

Fix: 78.14 / 91.1+
Fix from $1,600 2021-11-03
Firefox MEDIUM 6.5
CVE-2021-38497

Through use of reportValidity() and window.open(), a plain-text validation message could have been overlaid on another origin, leading to possible us…

Fix: 91.2 / 93.0+
Fix from $1,600 2021-11-03
Firefox HIGH 8.8
CVE-2021-29988

Firefox incorrectly treated an inline list-item element as a block element, resulting in an out of bounds read or memory corruption, and a potentiall…

Fix: 78.13.0 / 91.0+
Fix from $1,950 2021-08-17
Firefox HIGH 8.8
CVE-2021-29989

Mozilla developers reported memory safety bugs present in Firefox 90 and Firefox ESR 78.12. Some of these bugs showed evidence of memory corruption a…

Fix: 78.13.0 / 91.0+
Fix from $1,950 2021-08-17
Firefox HIGH 8.8
CVE-2021-29990

Mozilla developers and community members reported memory safety bugs present in Firefox 90. Some of these bugs showed evidence of memory corruption a…

Fix: 91.0+
Fix from $1,950 2021-08-17
Firefox HIGH 8.8
CVE-2021-29980

Uninitialized memory in a canvas object could have caused an incorrect free() leading to memory corruption and a potentially exploitable crash. This …

Fix: 78.13.0 / 91.0+
Fix from $1,950 2021-08-17
Firefox HIGH 8.8
CVE-2021-29981

An issue present in lowering/register allocation could have led to obscure but deterministic register confusion failures in JITted code that would le…

Fix: 91.0+
Fix from $1,950 2021-08-17
Firefox HIGH 8.8
CVE-2021-29984

Instruction reordering resulted in a sequence of instructions that would cause an object to be incorrectly considered during garbage collection. This…

Fix: 78.13.0 / 91.0+
Fix from $1,950 2021-08-17
Firefox HIGH 8.8
CVE-2021-29985

A use-after-free vulnerability in media channels could have led to memory corruption and a potentially exploitable crash. This vulnerability affects …

Fix: 78.13.0 / 91.0+
Fix from $1,950 2021-08-17
Firefox HIGH 8.1
CVE-2021-29986

A suspected race condition when calling getaddrinfo led to memory corruption and a potentially exploitable crash. *Note: This issue only affected Lin…

Fix: 78.13.0 / 91.0+
Fix from $1,950 2021-08-17
Firefox MEDIUM 6.5
CVE-2021-29982

Due to incorrect JIT optimization, we incorrectly interpreted data from the wrong type of object, resulting in the potential leak of a single bit of …

Fix: 91.0+
Fix from $1,600 2021-08-17
Firefox MEDIUM 6.5
CVE-2021-29983

Firefox for Android could get stuck in fullscreen mode and not exit it even after normal interactions that should cause it to exit. *Note: This issue…

Fix: 91.0+
Fix from $1,600 2021-08-17
Firefox MEDIUM 6.5
CVE-2021-29987

After requesting multiple permissions, and closing the first permission panel, subsequent permission panels will be displayed in a different position…

Fix: 91.0+
Fix from $1,600 2021-08-17
Firefox CRITICAL 9.8
CVE-2021-29971

If a user had granted a permission to a webpage and saved that grant, any webpage running on the same host - irrespective of scheme or port - would b…

Fix: 90.0+
Fix from $2,300 2021-08-05
Mozilla Vpn CRITICAL 9.8
CVE-2021-29978

Multiple low security issues were discovered and fixed in a security audit of Mozilla VPN 2.x branch as part of a 3rd party security audit. This vuln…

Fix: 2.3+
Fix from $2,300 2021-08-05
Firefox HIGH 8.8
CVE-2021-29970

A malicious webpage could have triggered a use-after-free, memory corruption, and a potentially exploitable crash. *This bug could only be triggered …

Fix: 78.12 / 90.0+
Fix from $1,950 2021-08-05
Firefox HIGH 8.8
CVE-2021-29972

A use-after-free vulnerability was found via testing, and traced to an out-of-date Cairo library. Updating the library resolved the issue, and may ha…

Fix: 90.0+
Fix from $1,950 2021-08-05
Firefox HIGH 8.8
CVE-2021-29973

Password autofill was enabled without user interaction on insecure websites on Firefox for Android. This was corrected to require user interaction wi…

Fix: 90.0+
Fix from $1,950 2021-08-05
Firefox HIGH 8.8
CVE-2021-29976

Mozilla developers reported memory safety bugs present in code shared between Firefox and Thunderbird. Some of these bugs showed evidence of memory c…

Fix: 78.12 / 90.0+
Fix from $1,950 2021-08-05
Firefox HIGH 8.8
CVE-2021-29977

Mozilla developers reported memory safety bugs present in Firefox 89. Some of these bugs showed evidence of memory corruption and we presume that wit…

Fix: 90.0+
Fix from $1,950 2021-08-05
Firefox MEDIUM 6.5
CVE-2021-29975

Through a series of DOM manipulations, a message, over which the attacker had control of the text but not HTML or formatting, could be overlaid on to…

Fix: 90.0+
Fix from $1,600 2021-08-05