Vulnerabilidades en mozilla

2105 resultados
Análisis Vexday

A Mozilla apresenta um perfil de risco baixo com apenas 3 vulnerabilidades catalogadas, nenhuma sob exploração ativa ou crítica. A fraqueza dominante identificada é CWE-400 (Uncontrolled Resource Consumption), que tipicamente afeta disponibilidade; a ausência de publicações recentes sugere que o risco atual não é imediato.

CVE-2025-4082MEDIUMWebGL shader attribute memory corruption in Thunderbird for macOSEPSS 0.5%CVE-2025-1012CRITICALUse-after-free during concurrent delazificationEPSS 0.5%CVE-2026-74958HIGHInformation disclosure in the WebRTC componentEPSS 0.5%CVE-2026-4706HIGHIncorrect boundary conditions in the Graphics: Canvas2D componentEPSS 0.5%CVE-2023-4579—Persisted search terms were formatted as URLsEPSS 0.5%CVE-2025-4083CRITICALProcess isolation bypass using "javascript:" URI links in cross-origin framesEPSS 0.5%CVE-2023-29544MEDIUMIf multiple instances of resource exhaustion occurred at the incorrect time, the garbage collector could have caused memory corruption and aEPSS 0.5%CVE-2025-9187CRITICALMemory safety bugs fixed in Firefox 142 and Thunderbird 142EPSS 0.4%CVE-2026-92040HIGHUse-after-free in the JavaScript: WebAssembly componentEPSS 0.4%CVE-2026-8959CRITICALSandbox escape due to incorrect boundary conditions in the Widget: Win32 componentEPSS 0.4%CVE-2026-7321CRITICALSandbox escape due to incorrect boundary conditions in the WebRTC: Networking componentEPSS 0.4%CVE-2026-84135CRITICALOther issue in Firefox Focus for AndroidEPSS 0.4%CVE-2026-74947HIGHPrivilege escalation due to invalid pointer in the Graphics componentEPSS 0.4%CVE-2026-8974HIGHMemory safety bugs fixed in Firefox ESR 140.11 and Firefox 151EPSS 0.4%CVE-2025-5262HIGHA double-free could have occurred in `vpx_codec_enc_init_multi` after a failed allocation when initializing the encoder for WebRTC. This couEPSS 0.4%CVE-2024-6615HIGHMemory safety bugs fixed in Firefox 128 and Thunderbird 128EPSS 0.4%CVE-2025-1936HIGHAdding %00 and a fake extension to a jar: URL changed the interpretation of the contentsEPSS 0.4%CVE-2024-9403HIGHMemory safety bugs present in Firefox 130. Some of these bugs showed evidence of memory corruption and we presume that with enough effort soEPSS 0.4%CVE-2026-8947HIGHUse-after-free in the DOM: Bindings (WebIDL) componentEPSS 0.4%CVE-2026-8090HIGHUse-after-free in the DOM: Networking componentEPSS 0.4%