Vulnerabilidades em mozilla

2.105 resultados
Análise Vexday

A Mozilla apresenta um perfil de risco baixo com apenas 3 vulnerabilidades catalogadas, nenhuma sob exploração ativa ou crítica. A fraqueza dominante identificada é CWE-400 (Uncontrolled Resource Consumption), que tipicamente afeta disponibilidade; a ausência de publicações recentes sugere que o risco atual não é imediato.

CVE-2022-22757MEDIUMRemote Agent, used in WebDriver, did not validate the Host or Origin headers. This could have allowed websites to connect back locally to thEPSS 0.2%CVE-2025-6703LOWtransport/fc.rs: panic attempting to send MAX_DATA with value larger max varintEPSS 0.2%CVE-2025-27426MEDIUMFirefox Mobile iOS Full Address Bar Spoof Using Server-Side Redirect to internal error pageEPSS 0.2%CVE-2025-11711MEDIUMSome non-writable Object properties could be modifiedEPSS 0.2%CVE-2026-2790HIGHSame-origin policy bypass in the Networking: JAR componentEPSS 0.2%CVE-2024-3861MEDIUMIf an AlignedBuffer were assigned to itself, the subsequent self-move could result in an incorrect reference count and later use-after-free.EPSS 0.2%CVE-2019-11753—The Firefox installer allows Firefox to be installed to a custom user writable location, leaving it unprotected from manipulation by unpriviEPSS 0.2%CVE-2026-6777MEDIUMOther issue in the Networking: DNS componentEPSS 0.2%CVE-2025-27425MEDIUMQR code user confirmation bypass with invalid protocolEPSS 0.2%CVE-2026-12325MEDIUMDenial-of-service in the Graphics: ImageLib componentEPSS 0.2%CVE-2025-6428MEDIUMFirefox for Android opened URLs specified in a link querystring parameterEPSS 0.2%CVE-2025-5020MEDIUMLinks using non-HTTP schemes opened from other apps such as Safari could have allowed spoofing of website addressesEPSS 0.2%CVE-2025-0239MEDIUMAlt-Svc ALPN validation failure when redirectedEPSS 0.2%CVE-2025-54144MEDIUMInternal Firefox open-text URL scheme allowed loading of arbitrary URLsEPSS 0.2%CVE-2026-74960HIGHSite isolation issue in the WebExtensions componentEPSS 0.2%CVE-2026-74962HIGHSite isolation issue in the Networking: Cookies componentEPSS 0.2%CVE-2025-8364MEDIUMAddress bar spoofing using an blob URI on Firefox for AndroidEPSS 0.2%CVE-2026-12303MEDIUMInformation disclosure due to incorrect boundary conditions in the Graphics: WebGPU componentEPSS 0.2%CVE-2025-55028MEDIUMJavaScript alerts could impede UI interaction or allow denial of service attacksEPSS 0.2%CVE-2026-13356MEDIUMInterrupted navigation could allow address bar origin spoofing in Firefox for iOSEPSS 0.2%