Vulnerability index

Browse CVEs

2,895 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Firefox HIGH 10.0
CVE-2011-0077EPSS 5%

Unspecified vulnerability in the browser engine in Mozilla Firefox 3.5.x before 3.5.19 and 3.6.x before 3.6.17, Thunderbird before 3.1.10, and SeaMon…

Fix: after 3.1.9
Fix from $1,950 2011-05-07
Firefox HIGH 10.0
CVE-2011-0078EPSS 5%

Unspecified vulnerability in the browser engine in Mozilla Firefox 3.5.x before 3.5.19 and 3.6.x before 3.6.17, Thunderbird before 3.1.10, and SeaMon…

Fix: after 3.1.9
Fix from $1,950 2011-05-07
Firefox HIGH 10.0
CVE-2011-0079EPSS 7%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x before 4.0.1 allow remote attackers to cause a denial of service (m…

Patch available
Fix from $1,950 2011-05-07
Firefox HIGH 10.0
CVE-2011-0080EPSS 6%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.5.x before 3.5.19 and 3.6.x before 3.6.17, Thunderbird before 3.1.10,…

Fix: after 3.1.9
Fix from $1,950 2011-05-07
Firefox HIGH 10.0
CVE-2011-0081EPSS 5%

Unspecified vulnerability in the browser engine in Mozilla Firefox 3.6.x before 3.6.17 and 4.x before 4.0.1, and Thunderbird 3.1.x before 3.1.10, all…

Patch available
Fix from $1,950 2011-05-07
Firefox HIGH 7.5
CVE-2011-0076

Unspecified vulnerability in the Java Embedding Plugin (JEP) in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, o…

Fix: after 2.0.13
Fix from $1,950 2011-05-07
Firefox MEDIUM 5.0
CVE-2011-0067

Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, does not properly implement autocompletion for forms, which allow…

Fix: after 2.0.13
Fix from $1,600 2011-05-07
Firefox MEDIUM 5.0
CVE-2011-0071

Directory traversal vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, Thunderbird before 3.1.10, and SeaMonkey before 2.0.14 on…

Fix: after 3.1.9
Fix from $1,600 2011-05-07
Firefox HIGH 10.0
CVE-2011-0065EPSS 74%

Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allows remote attackers to execut…

Fix: after 2.0.13
Fix from $1,950 2011-05-07
Firefox HIGH 10.0
CVE-2011-1300

The Program::getActiveUniformMaxLength function in libGLESv2/Program.cpp in libGLESv2.dll in the WebGLES library in Almost Native Graphics Layer Engi…

Fix: 10.0.648.205+
Fix from $1,950 2011-04-15
Firefox MEDIUM 6.8
CVE-2011-0064

The hb_buffer_ensure function in hb-buffer.c in HarfBuzz, as used in Pango 1.28.3, Firefox, and other products, does not verify that memory reallocat…

Patch available
Fix from $1,600 2011-03-07
Firefox HIGH 10.0
CVE-2011-0053EPSS 6%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, Thunderbird before 3.1.8, and Se…

Fix: after 3.1.7
Fix from $1,950 2011-03-02
Firefox HIGH 10.0
CVE-2011-0054

Buffer overflow in the JavaScript engine in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, might allow remote at…

Fix: after 2.0.11
Fix from $1,950 2011-03-02
Firefox HIGH 10.0
CVE-2011-0055EPSS 7%

Use-after-free vulnerability in the JSON.stringify method in js3250.dll in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey befor…

Fix: after 2.0.11
Fix from $1,950 2011-03-02
Firefox HIGH 10.0
CVE-2011-0056

Buffer overflow in the JavaScript engine in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, might allow remote at…

Fix: after 2.0.11
Fix from $1,950 2011-03-02
Firefox HIGH 10.0
CVE-2011-0057

Use-after-free vulnerability in the Web Workers implementation in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12,…

Fix: after 2.0.11
Fix from $1,950 2011-03-02
Firefox HIGH 10.0
CVE-2011-0058EPSS 5%

Buffer overflow in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, on Windows allows remote attackers to execute …

Fix: after 2.0.11
Fix from $1,950 2011-03-02
Firefox HIGH 10.0
CVE-2011-0062

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.6.x before 3.6.14 and Thunderbird 3.1.x before 3.1.8 allow remote att…

Mitigation only
Fix from $1,950 2011-03-02
Firefox HIGH 9.3
CVE-2011-0061

Buffer overflow in Mozilla Firefox 3.6.x before 3.6.14, Thunderbird before 3.1.8, and SeaMonkey before 2.0.12 might allow remote attackers to execute…

Fix: after 3.1.7
Fix from $1,950 2011-03-02
Firefox MEDIUM 6.8
CVE-2011-0051

Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, does not properly handle certain recursive eval calls, which make…

Fix: after 2.0.11
Fix from $1,600 2011-03-02
Firefox MEDIUM 6.8
CVE-2011-0059

Cross-site request forgery (CSRF) vulnerability in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, allows remote …

Fix: after 2.0.11
Fix from $1,600 2011-03-02
Bugzilla HIGH 7.5
CVE-2010-4568

Bugzilla 2.14 through 2.22.7; 3.0.x, 3.1.x, and 3.2.x before 3.2.10; 3.4.x before 3.4.10; 3.6.x before 3.6.4; and 4.0.x before 4.0rc2 does not proper…

Mitigation only
Fix from $1,950 2011-01-28
Bugzilla MEDIUM 6.8
CVE-2011-0046

Multiple cross-site request forgery (CSRF) vulnerabilities in Bugzilla before 3.2.10, 3.4.x before 3.4.10, 3.6.x before 3.6.4, and 4.0.x before 4.0rc…

Fix: after 3.2.9
Fix from $1,600 2011-01-28
Firefox HIGH 9.3
CVE-2010-3766EPSS 7%

Use-after-free vulnerability in Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, allows remote attackers to execut…

Fix: after 3.5.15
Fix from $1,950 2010-12-10
Firefox HIGH 9.3
CVE-2010-3767

Integer overflow in the NewIdArray function in Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, allows remote atta…

Fix: after 3.5.15
Fix from $1,950 2010-12-10
Firefox HIGH 9.3
CVE-2010-3768

Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, Thunderbird before 3.0.11 and 3.1.x before 3.1.7, and SeaMonkey before 2.0.11 do not properly …

Fix: after 3.5.15
Fix from $1,950 2010-12-10
Firefox HIGH 9.3
CVE-2010-3769

The line-breaking implementation in Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, Thunderbird before 3.0.11 and 3.1.x before 3.1.7, and SeaM…

Fix: after 3.5.15
Fix from $1,950 2010-12-10
Firefox HIGH 9.3
CVE-2010-3772

Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, does not properly calculate index values for certain child conten…

Fix: after 3.5.15
Fix from $1,950 2010-12-10
Firefox HIGH 9.3
CVE-2010-3775

Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, does not properly handle certain redirections involving data: URL…

Fix: after 3.5.15
Fix from $1,950 2010-12-10
Firefox HIGH 9.3
CVE-2010-3776EPSS 9%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, Thunderbird before 3.0.11 and 3.…

Fix: after 3.5.15
Fix from $1,950 2010-12-10