Vulnerabilidades em mozilla

2.105 resultados
Análise Vexday

A Mozilla apresenta um perfil de risco baixo com apenas 3 vulnerabilidades catalogadas, nenhuma sob exploração ativa ou crítica. A fraqueza dominante identificada é CWE-400 (Uncontrolled Resource Consumption), que tipicamente afeta disponibilidade; a ausência de publicações recentes sugere que o risco atual não é imediato.

CVE-2026-14899HIGHOff-by-one out of bounds read in MIME header parser for forwardingEPSS 0.3%CVE-2020-6824—Initially, a user opens a Private Browsing Window and generates a password for a site, then closes the Private Browsing Window but leaves FiEPSS 0.3%CVE-2026-24869HIGHUse-after-free in the Layout: Scrolling and Overflow componentEPSS 0.3%CVE-2026-16373HIGHInformation disclosure in the Privacy component in Firefox for AndroidEPSS 0.3%CVE-2024-8399MEDIUMWebsites could utilize Javascript links to spoof URL addresses in the Focus navigation bar This vulnerability affects Focus for iOS < 130.EPSS 0.3%CVE-2024-9936MEDIUMWhen manipulating the selection node cache, an attacker may have been able to cause unexpected behavior, potentially leading to an exploitabEPSS 0.3%CVE-2025-66453MEDIUMRhino vulnerable high CPU usage and potential DoS when passing specific numbers to toFixed() functionEPSS 0.3%CVE-2024-43111CRITICALLong pressing on a download link could potentially allow Javascript commands to be executed within the browser This vulnerability affects FiEPSS 0.3%CVE-2025-11152HIGHSandbox escape due to integer overflow in the Graphics: Canvas2D componentEPSS 0.3%CVE-2025-5267MEDIUMClickjacking vulnerability could have led to leaking saved payment card detailsEPSS 0.3%CVE-2026-16366HIGHPrivilege escalation in the DOM: Navigation componentEPSS 0.3%CVE-2025-3522MEDIUMLeak of hashed Window credentials via crafted attachment URLEPSS 0.3%CVE-2020-12400—When converting coordinates from projective to affine, the modular inversion was not performed in constant time, resulting in a possible timEPSS 0.3%CVE-2025-6430MEDIUMContent-Disposition header ignored when a file is included in an embed or object tagEPSS 0.3%CVE-2025-11720HIGHSpoofing risk in Android custom tabsEPSS 0.3%CVE-2025-11717CRITICALThe password edit screen was not hidden in Android card viewEPSS 0.3%CVE-2026-84641HIGHInformation disclosure due to malicious IMAP server responseEPSS 0.3%CVE-2022-1520MEDIUMWhen viewing an email message A, which contains an attached message B, where B is encrypted or digitally signed or both, Thunderbird may shoEPSS 0.3%CVE-2026-12318HIGHIncorrect boundary conditions in the Libraries component in NSSEPSS 0.3%CVE-2026-16359CRITICALIncorrect boundary conditions in the Audio/Video: GMP componentEPSS 0.3%