Vulnerability index

Browse CVEs

2,886 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2021-38495 Mozilla developers reported memory safety bugs present in Thunderbird 78.13.0. Some of these bugs showed evidence of memory corruption and we presume… Firefox Esr 91.1+ Fix from $1,9502021-11-03 HIGH 8.8 CVE-2021-38496 During operations on MessageTasks, a task may have been removed while it was still scheduled, resulting in memory corruption and a potentially exploi… Firefox 78.15 / 91.2+ Fix from $1,9502021-11-03 HIGH 8.8 CVE-2021-38499 Mozilla developers reported memory safety bugs present in Firefox 92. Some of these bugs showed evidence of memory corruption and we presume that wit… Firefox 93.0+ Fix from $1,9502021-11-03 HIGH 8.8 CVE-2021-38500 Mozilla developers reported memory safety bugs present in Firefox 92 and Firefox ESR 91.1. Some of these bugs showed evidence of memory corruption an… Firefox 78.15 / 91.2+ Fix from $1,9502021-11-03 HIGH 8.8 CVE-2021-38501 Mozilla developers reported memory safety bugs present in Firefox 92 and Firefox ESR 91.1. Some of these bugs showed evidence of memory corruption an… Firefox 91.2 / 93.0+ Fix from $1,9502021-11-03 HIGH 8.1 CVE-2021-29991 Firefox incorrectly accepted a newline in a HTTP/3 header, interpretting it as two separate headers. This allowed for a header splitting attack again… Firefox 91.0.1+ Fix from $1,9502021-11-03 HIGH 8.1 CVE-2021-29993 Firefox for Android allowed navigations through the `intent://` protocol, which could be used to cause crashes and UI spoofs. *This bug only affects … Firefox Mobile 92.0+ Fix from $1,9502021-11-03 HIGH 7.5 CVE-2021-38498 During process shutdown, a document could have caused a use-after-free of a languages service object, leading to memory corruption and a potentially … Firefox 91.2 / 93.0+ Fix from $1,9502021-11-03 MEDIUM 6.5 CVE-2021-38491 Mixed-content checks were unable to analyze opaque origins which led to some mixed content being loaded. This vulnerability affects Firefox < 92. Firefox 92.0+ Fix from $1,6002021-11-03 MEDIUM 6.5 CVE-2021-38492 When delegating navigations to the operating system, Firefox would accept the `mk` scheme which might allow attackers to launch pages and execute scr… Firefox 78.14 / 91.1+ Fix from $1,6002021-11-03 MEDIUM 6.5 CVE-2021-38497 Through use of reportValidity() and window.open(), a plain-text validation message could have been overlaid on another origin, leading to possible us… Firefox 91.2 / 93.0+ Fix from $1,6002021-11-03 HIGH 8.8 CVE-2021-29988 Firefox incorrectly treated an inline list-item element as a block element, resulting in an out of bounds read or memory corruption, and a potentiall… Firefox 78.13.0 / 91.0+ Fix from $1,9502021-08-17 HIGH 8.8 CVE-2021-29989 Mozilla developers reported memory safety bugs present in Firefox 90 and Firefox ESR 78.12. Some of these bugs showed evidence of memory corruption a… Firefox 78.13.0 / 91.0+ Fix from $1,9502021-08-17 HIGH 8.8 CVE-2021-29990 Mozilla developers and community members reported memory safety bugs present in Firefox 90. Some of these bugs showed evidence of memory corruption a… Firefox 91.0+ Fix from $1,9502021-08-17 HIGH 8.8 CVE-2021-29980 Uninitialized memory in a canvas object could have caused an incorrect free() leading to memory corruption and a potentially exploitable crash. This … Firefox 78.13.0 / 91.0+ Fix from $1,9502021-08-17 HIGH 8.8 CVE-2021-29981 An issue present in lowering/register allocation could have led to obscure but deterministic register confusion failures in JITted code that would le… Firefox 91.0+ Fix from $1,9502021-08-17 HIGH 8.8 CVE-2021-29984 Instruction reordering resulted in a sequence of instructions that would cause an object to be incorrectly considered during garbage collection. This… Firefox 78.13.0 / 91.0+ Fix from $1,9502021-08-17 HIGH 8.8 CVE-2021-29985 A use-after-free vulnerability in media channels could have led to memory corruption and a potentially exploitable crash. This vulnerability affects … Firefox 78.13.0 / 91.0+ Fix from $1,9502021-08-17 HIGH 8.1 CVE-2021-29986 A suspected race condition when calling getaddrinfo led to memory corruption and a potentially exploitable crash. *Note: This issue only affected Lin… Firefox 78.13.0 / 91.0+ Fix from $1,9502021-08-17 MEDIUM 6.5 CVE-2021-29982 Due to incorrect JIT optimization, we incorrectly interpreted data from the wrong type of object, resulting in the potential leak of a single bit of … Firefox 91.0+ Fix from $1,6002021-08-17 MEDIUM 6.5 CVE-2021-29983 Firefox for Android could get stuck in fullscreen mode and not exit it even after normal interactions that should cause it to exit. *Note: This issue… Firefox 91.0+ Fix from $1,6002021-08-17 MEDIUM 6.5 CVE-2021-29987 After requesting multiple permissions, and closing the first permission panel, subsequent permission panels will be displayed in a different position… Firefox 91.0+ Fix from $1,6002021-08-17 CRITICAL 9.8 CVE-2021-29971 If a user had granted a permission to a webpage and saved that grant, any webpage running on the same host - irrespective of scheme or port - would b… Firefox 90.0+ Fix from $2,3002021-08-05 CRITICAL 9.8 CVE-2021-29978 Multiple low security issues were discovered and fixed in a security audit of Mozilla VPN 2.x branch as part of a 3rd party security audit. This vuln… Mozilla Vpn 2.3+ Fix from $2,3002021-08-05 HIGH 8.8 CVE-2021-29970 A malicious webpage could have triggered a use-after-free, memory corruption, and a potentially exploitable crash. *This bug could only be triggered … Firefox 78.12 / 90.0+ Fix from $1,9502021-08-05 HIGH 8.8 CVE-2021-29972 A use-after-free vulnerability was found via testing, and traced to an out-of-date Cairo library. Updating the library resolved the issue, and may ha… Firefox 90.0+ Fix from $1,9502021-08-05 HIGH 8.8 CVE-2021-29973 Password autofill was enabled without user interaction on insecure websites on Firefox for Android. This was corrected to require user interaction wi… Firefox 90.0+ Fix from $1,9502021-08-05 HIGH 8.8 CVE-2021-29976 Mozilla developers reported memory safety bugs present in code shared between Firefox and Thunderbird. Some of these bugs showed evidence of memory c… Firefox 78.12 / 90.0+ Fix from $1,9502021-08-05 HIGH 8.8 CVE-2021-29977 Mozilla developers reported memory safety bugs present in Firefox 89. Some of these bugs showed evidence of memory corruption and we presume that wit… Firefox 90.0+ Fix from $1,9502021-08-05 MEDIUM 6.5 CVE-2021-29975 Through a series of DOM manipulations, a message, over which the attacker had control of the text but not HTML or formatting, could be overlaid on to… Firefox 90.0+ Fix from $1,6002021-08-05