Vulnerabilities > Mozilla > Firefox

DATE CVE VULNERABILITY TITLE RISK
2024-08-06 CVE-2024-7527 Use After Free vulnerability in Mozilla Firefox
Unexpected marking work at the start of sweeping could have led to a use-after-free.
network
low complexity
mozilla CWE-416
8.8
2024-08-06 CVE-2024-7528 Use After Free vulnerability in Mozilla Firefox
Incorrect garbage collection interaction in IndexedDB could have led to a use-after-free.
network
low complexity
mozilla CWE-416
8.8
2024-08-06 CVE-2024-7529 Unspecified vulnerability in Mozilla Firefox
The date picker could partially obscure security prompts.
network
low complexity
mozilla
6.5
2024-08-06 CVE-2024-7530 Use After Free vulnerability in Mozilla Firefox
Incorrect garbage collection interaction could have led to a use-after-free.
network
low complexity
mozilla CWE-416
8.8
2024-08-06 CVE-2024-7531 Unspecified vulnerability in Mozilla Firefox
Calling `PK11_Encrypt()` in NSS using CKM_CHACHA20 and the same buffer for input and output can result in plaintext on an Intel Sandy Bridge processor.
network
low complexity
mozilla
6.5
2024-07-09 CVE-2024-6608 Unspecified vulnerability in Mozilla Firefox
It was possible to move the cursor using pointerlock from an iframe.
network
low complexity
mozilla
4.3
2024-07-09 CVE-2024-6609 Unspecified vulnerability in Mozilla Firefox
When almost out-of-memory an elliptic curve key which was never allocated could have been freed again.
network
low complexity
mozilla
8.8
2024-07-09 CVE-2024-6610 Unspecified vulnerability in Mozilla Firefox
Form validation popups could capture escape key presses.
network
low complexity
mozilla
4.3
2024-06-13 CVE-2024-38312 Unspecified vulnerability in Mozilla Firefox
When browsing private tabs, some data related to location history or webpage thumbnails could be persisted incorrectly within the sandboxed app bundle after app termination This vulnerability affects Firefox for iOS < 127.
network
low complexity
mozilla
6.5
2024-06-13 CVE-2024-38313 Unspecified vulnerability in Mozilla Firefox
In certain scenarios a malicious website could attempt to display a fake location URL bar which could mislead users as to the actual website address This vulnerability affects Firefox for iOS < 127.
network
low complexity
mozilla
4.3