Vulnerabilidades em mozilla
2.105 resultadosAnálise Vexday
A Mozilla apresenta um perfil de risco baixo com apenas 3 vulnerabilidades catalogadas, nenhuma sob exploração ativa ou crítica. A fraqueza dominante identificada é CWE-400 (Uncontrolled Resource Consumption), que tipicamente afeta disponibilidade; a ausência de publicações recentes sugere que o risco atual não é imediato.
CVE-2026-8974HIGHMemory safety bugs fixed in Firefox ESR 140.11 and Firefox 151EPSS 0.4%CVE-2026-8959CRITICALSandbox escape due to incorrect boundary conditions in the Widget: Win32 componentEPSS 0.4%CVE-2025-5262HIGHA double-free could have occurred in `vpx_codec_enc_init_multi` after a failed allocation when initializing the encoder for WebRTC. This couEPSS 0.4%CVE-2024-6615HIGHMemory safety bugs fixed in Firefox 128 and Thunderbird 128EPSS 0.4%CVE-2024-9403HIGHMemory safety bugs present in Firefox 130. Some of these bugs showed evidence of memory corruption and we presume that with enough effort soEPSS 0.4%CVE-2026-8947HIGHUse-after-free in the DOM: Bindings (WebIDL) componentEPSS 0.4%CVE-2026-8090HIGHUse-after-free in the DOM: Networking componentEPSS 0.4%CVE-2026-2803HIGHInformation disclosure, mitigation bypass in the Settings UI componentEPSS 0.4%CVE-2026-74965HIGHPrivilege escalation in the Shell Integration componentEPSS 0.4%CVE-2026-74953HIGHPrivilege escalation in the Networking: Cookies componentEPSS 0.4%CVE-2025-8044CRITICALMemory safety bugs fixed in Firefox 141 and Thunderbird 141EPSS 0.4%CVE-2026-92047HIGHPrivilege escalation in the Crash Reporting componentEPSS 0.4%CVE-2025-13016HIGHIncorrect boundary conditions in the JavaScript: WebAssembly componentEPSS 0.4%CVE-2026-92073HIGHPrivilege escalation in the Enterprise Policies componentEPSS 0.4%CVE-2026-92062HIGHPrivilege escalation in the Session Restore componentEPSS 0.4%CVE-2026-74961CRITICALSide-channel in the Web Audio componentEPSS 0.4%CVE-2026-92055HIGHPrivilege escalation in the DevTools componentEPSS 0.4%CVE-2025-14333HIGHMemory safety bugs fixed in Firefox ESR 140.6, Thunderbird ESR 140.6, Firefox 146 and Thunderbird 146EPSS 0.4%CVE-2026-74938CRITICALMitigation bypass in the JavaScript: GC componentEPSS 0.4%CVE-2016-5291—A same-origin policy bypass with local shortcut files to load arbitrary local content from disk. This vulnerability affects Thunderbird < 45EPSS 0.4%