Vulnerabilities in mozilla

2,105 results
Vexday analysis

A Mozilla apresenta um perfil de risco baixo com apenas 3 vulnerabilidades catalogadas, nenhuma sob exploração ativa ou crítica. A fraqueza dominante identificada é CWE-400 (Uncontrolled Resource Consumption), que tipicamente afeta disponibilidade; a ausência de publicações recentes sugere que o risco atual não é imediato.

CVE-2026-12329MEDIUMMemory safety bug fixed in Thunderbird ESR 140.12EPSS 0.3%CVE-2024-26281MEDIUMUpon scanning a JavaScript URI with the QR code scanner, an attacker could have executed unauthorized scripts on the current top origin siteEPSS 0.3%CVE-2026-84126MEDIUMIncorrect boundary conditions in the Layout: Grid componentEPSS 0.3%CVE-2023-49061—An attacker could have performed HTML template injection via Reader Mode and exfiltrated user information. This vulnerability affects FirefoEPSS 0.3%CVE-2025-1933HIGHJIT corruption of WASM i32 return values on 64-bit CPUsEPSS 0.3%CVE-2025-10532MEDIUMIncorrect boundary conditions in the JavaScript: GC componentEPSS 0.3%CVE-2025-10535HIGHInformation disclosure, mitigation bypass in the Privacy component in Firefox for AndroidEPSS 0.3%CVE-2026-16386HIGHInformation disclosure due to uninitialized memory in the Graphics: WebGPU componentEPSS 0.3%CVE-2017-7761—The Mozilla Maintenance Service "helper.exe" application creates a temporary directory writable by non-privileged users. When this is combinEPSS 0.3%CVE-2026-16385HIGHInformation disclosure due to uninitialized memory in the Graphics: WebGPU componentEPSS 0.3%CVE-2026-16384HIGHInformation disclosure due to uninitialized memory in the Graphics: WebGPU componentEPSS 0.3%CVE-2025-14332HIGHMemory safety bugs fixed in Firefox 146 and Thunderbird 146EPSS 0.3%CVE-2025-6425MEDIUMThe WebCompat WebExtension shipped with Firefox exposed a persistent UUIDEPSS 0.3%CVE-2026-16380CRITICALMitigation bypass in the Networking componentEPSS 0.3%CVE-2026-16370CRITICALMitigation bypass in the DOM: Networking componentEPSS 0.3%CVE-2026-12298MEDIUMMemory safety bug fixed in Firefox 152EPSS 0.3%CVE-2026-16364CRITICALIncorrect boundary conditions in the Audio/Video: Playback componentEPSS 0.3%CVE-2026-57963MEDIUMChat UI manipulation by injectionEPSS 0.3%CVE-2026-12299MEDIUMJIT miscompilation in the DOM: Core & HTML componentEPSS 0.3%CVE-2026-16378HIGHOther issue in the DOM: Copy & Paste and Drag & Drop componentEPSS 0.3%