Vulnerability index

Browse CVEs

2,895 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Firefox HIGH 10.0
CVE-2011-3660

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and SeaMonkey before 2.6 …

Fix: after 2.5
Fix from $1,950 2011-12-21
Firefox HIGH 7.5
CVE-2011-3658EPSS 70%

The SVG implementation in Mozilla Firefox 8.0, Thunderbird 8.0, and SeaMonkey 2.5 does not properly interact with DOMAttrModified event handlers, whi…

Mitigation only
Fix from $1,950 2011-12-21
Firefox MEDIUM 5.0
CVE-2011-4688

Mozilla Firefox 8.0.1 and earlier does not prevent capture of data about the times of Same Origin Policy violations during IFRAME loading attempts, w…

Fix: after 8.0.1
Fix from $1,600 2011-12-07
Firefox MEDIUM 5.0
CVE-2002-2437

The JavaScript implementation in Mozilla Firefox before 4.0, Thunderbird before 3.3, and SeaMonkey before 2.1 does not properly restrict the set of v…

Fix: after 3.6.24
Fix from $1,600 2011-12-07
Firefox HIGH 9.3
CVE-2011-3655

Mozilla Firefox 4.x through 7.0 and Thunderbird 5.0 through 7.0 perform access control without checking for use of the NoWaiverWrapper wrapper, which…

Mitigation only
Fix from $1,950 2011-11-09
Firefox HIGH 10.0
CVE-2011-3651EPSS 6%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 7.0 and Thunderbird 7.0 allow remote attackers to cause a denial of ser…

Mitigation only
Fix from $1,950 2011-11-09
Firefox HIGH 10.0
CVE-2011-3652

The browser engine in Mozilla Firefox before 8.0 and Thunderbird before 8.0 does not properly allocate memory, which allows remote attackers to cause…

Fix: after 7.0.1
Fix from $1,950 2011-11-09
Firefox HIGH 10.0
CVE-2011-3654

The browser engine in Mozilla Firefox before 8.0 and Thunderbird before 8.0 does not properly handle links from SVG mpath elements to non-SVG element…

Fix: after 7.0.1
Fix from $1,950 2011-11-09
Firefox HIGH 9.3
CVE-2011-3647

The JSSubScriptLoader in Mozilla Firefox before 3.6.24 and Thunderbird before 3.1.6 does not properly handle XPCNativeWrappers during calls to the lo…

Fix: after 3.6.23
Fix from $1,950 2011-11-09
Firefox HIGH 9.3
CVE-2011-3650

Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 do not properly handle JavaScript files that conta…

Fix: after 3.6.23
Fix from $1,950 2011-11-09
Firefox MEDIUM 5.0
CVE-2011-3653

Mozilla Firefox before 8.0 and Thunderbird before 8.0 on Mac OS X do not properly interact with the GPU memory behavior of a certain driver for Intel…

Fix: after 7.0.1
Fix from $1,600 2011-11-09
Firefox HIGH 10.0
CVE-2011-2998EPSS 5%

Integer underflow in Mozilla Firefox 3.6.x before 3.6.23 allows remote attackers to cause a denial of service (application crash) or possibly execute…

Mitigation only
Fix from $1,950 2011-09-30
Firefox HIGH 10.0
CVE-2011-2995

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0, and SeaMonkey …

Fix: after 6.0.2
Fix from $1,950 2011-09-29
Firefox HIGH 10.0
CVE-2011-2996

Unspecified vulnerability in the plugin API in Mozilla Firefox 3.6.x before 3.6.23 allows remote attackers to cause a denial of service (memory corru…

Mitigation only
Fix from $1,950 2011-09-29
Firefox HIGH 10.0
CVE-2011-2997EPSS 5%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 6, Thunderbird before 7.0, and SeaMonkey before 2.4 allow remote attack…

Fix: after 6.0.2
Fix from $1,950 2011-09-29
Firefox HIGH 10.0
CVE-2011-3003

Mozilla Firefox before 7.0 and SeaMonkey before 2.4 allow remote attackers to cause a denial of service (application crash) or possibly execute arbit…

Fix: 2.4 / 7.0+
Fix from $1,950 2011-09-29
Firefox HIGH 9.3
CVE-2011-3002

Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla Firefox before 7.0 and SeaMonkey before 2.4, does not validate the return value of a …

Fix: 2.4 / 7.0+
Fix from $1,950 2011-09-29
Firefox HIGH 9.3
CVE-2011-3005

Use-after-free vulnerability in Mozilla Firefox 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 allows remote attackers to cause a de…

Fix: after 6.0.2
Fix from $1,950 2011-09-29
Firefox HIGH 9.3
CVE-2011-3232EPSS 5%

YARR, as used in Mozilla Firefox before 7.0, Thunderbird before 7.0, and SeaMonkey before 2.4, allows remote attackers to cause a denial of service (…

Fix: after 6.0.2
Fix from $1,950 2011-09-29
Firefox HIGH 9.3
CVE-2011-2993

The implementation of digital signatures for JAR files in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, and possibly other products does n…

Mitigation only
Fix from $1,950 2011-08-18
Firefox HIGH 10.0
CVE-2011-0084

The SVGTextElement.getCharNumAtPosition function in Mozilla Firefox before 3.6.20, and 4.x through 5; Thunderbird 3.x before 3.1.12 and other version…

Fix: after 3.6.19
Fix from $1,950 2011-08-18
Firefox HIGH 10.0
CVE-2011-2378EPSS 6%

The appendChild function in Mozilla Firefox before 3.6.20, Thunderbird 3.x before 3.1.12, SeaMonkey 2.x, and possibly other products does not properl…

Fix: after 3.6.19
Fix from $1,950 2011-08-18
Firefox HIGH 10.0
CVE-2011-2982EPSS 5%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.20, Thunderbird 2.x and 3.x before 3.1.12, SeaMonkey 1.x and…

Fix: after 3.6.19
Fix from $1,950 2011-08-18
Firefox HIGH 10.0
CVE-2011-2984

Mozilla Firefox before 3.6.20, SeaMonkey 2.x, Thunderbird 3.x before 3.1.12, and possibly other products does not properly handle the dropping of a t…

Fix: after 3.6.19
Fix from $1,950 2011-08-18
Firefox HIGH 10.0
CVE-2011-2985EPSS 5%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 5, Thunderbird before 6, SeaMonkey 2.x before 2.3, and poss…

Fix: after 5.0
Fix from $1,950 2011-08-18
Firefox HIGH 10.0
CVE-2011-2987EPSS 5%

Heap-based buffer overflow in Almost Native Graphics Layer Engine (ANGLE), as used in the WebGL implementation in Mozilla Firefox 4.x through 5, Thun…

Fix: after 5.0
Fix from $1,950 2011-08-18
Firefox HIGH 10.0
CVE-2011-2988EPSS 5%

Buffer overflow in an unspecified string class in the WebGL shader implementation in Mozilla Firefox 4.x through 5, Thunderbird before 6, SeaMonkey 2…

Fix: after 5.0
Fix from $1,950 2011-08-18
Firefox HIGH 10.0
CVE-2011-2989

The browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, Thunderbird before 6, and possibly other products does not properly im…

Fix: after 5.0
Fix from $1,950 2011-08-18
Firefox HIGH 10.0
CVE-2011-2991

The browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, Thunderbird before 6, and possibly other products does not properly im…

Fix: after 5.0
Fix from $1,950 2011-08-18
Firefox HIGH 10.0
CVE-2011-2992

The Ogg reader in the browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, Thunderbird before 6, and possibly other products al…

Fix: after 5.0
Fix from $1,950 2011-08-18