Mozilla 漏洞與 CVE 列表(3,619)

產品(CPE): — CVE 數: 3,619

Mozilla 漏洞概覽

彙總 Mozilla 相關全部產品的 CVE 與安全漏洞情報,包括 CVSS、EPSS、公開時間與漏洞情報資料。

歷史漏洞主要涉及 路徑處理缺陷與輸入驗證問題 等問題,部分漏洞可能導致 異常行為,並影響 生產負載與軟體部署 相關場景。

相關漏洞資料主要來源於公開漏洞披露與安全公告,可用於評估歷史漏洞暴露面與修補優先順序。

漏洞分布趨勢(近 24 個月)

顯示 1203619 CVE 數
«« 第一頁 « 上一頁 第 1 / 181 頁 下一頁 »
CVE 摘要 來源 最高 CVSS EPSS % 公開時間 更新時間
CVE-2026-15719 We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing this flaw. This vulnerability was fixed in Firefox 152.0.6, Firefox ESR 115.38, and Firefox ESR 140.13. [email protected] 5.4 0.13% 2026-07-14 2026-07-21
CVE-2026-15718 We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing this flaw. This vulnerability was fixed in Firefox 152.0.6 and Firefox ESR 140.13. [email protected] 4.3 0.16% 2026-07-14 2026-07-21
CVE-2026-14906 Pages with malicious titles could potentially allow saved PDF content to overwrite PDF files or bundled content within the Firefox for iOS application sandbox. This vulnerability was fixed in Firefox for iOS 152.4. [email protected] 5.3 0.19% 2026-07-13 2026-07-14
CVE-2026-13356 A malicious webpage could interrupt a pending navigation by enqueuing a synchronous JavaScript dialog, causing the browser UI to display the destination origin in the address bar while continuing to render attacker-controlled content. This vulnerability was fixed in Firefox for iOS 152.3. [email protected] 6.3 0.15% 2026-07-06 2026-07-08
CVE-2026-57963 An attacker who can send HTML chat messages (via Matrix or XMPP) can inject arbitrary styled content, phishing links, and CSS that manipulates the chat UI. This vulnerability was fixed in Thunderbird 152.0.1 and Thunderbird 140.12.1. [email protected] 6.5 0.19% 2026-06-30 2026-07-06
CVE-2026-57962 A malicious LDAP server, which a Thunderbird user is configured to query for address-book autocomplete, can stash arbitrarily large amounts of attacker-supplied data into the Thunderbird LDAP client until it crashes due to memory exhaustion. This vulnerability was fixed in Thunderbird 152.0.1 and Thunderbird 140.12.1. [email protected] 5.3 0.22% 2026-06-30 2026-07-06
CVE-2026-14241 Memory safety bugs present in Firefox 152.0.3. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 152.0.4. [email protected] 9.8 0.23% 2026-06-30 2026-07-06
CVE-2026-53900 Firefox for iOS preserved cookies set on the initial PDF request across cross-origin HTTP redirects in TemporaryDocument, allowing a malicious site to inject arbitrary cookies into requests to an unrelated target domain. This vulnerability was fixed in Firefox for iOS 152.0. [email protected] 4.3 0.11% 2026-06-16 2026-06-17
CVE-2026-53899 Firefox for iOS used partial domain matching when attaching cookies to PDF requests, allowing a malicious site on a suffix domain to receive cookies belonging to the target site. This vulnerability was fixed in Firefox for iOS 152.0. [email protected] 6.5 0.10% 2026-06-16 2026-06-17
CVE-2026-12330 Incorrect boundary conditions in the Internationalization component. This vulnerability was fixed in Firefox ESR 140.12, Firefox ESR 115.37, and Thunderbird 140.12. [email protected] 5.4 0.16% 2026-06-16 2026-06-17
CVE-2026-12329 Memory safety bug fixed in Thunderbird ESR 140.12. This vulnerability was fixed in Firefox ESR 140.12 and Thunderbird 140.12. [email protected] 5.3 0.25% 2026-06-16 2026-07-15
CVE-2026-12328 Memory safety bugs present in Firefox ESR 115.36, Firefox ESR 140.11, Thunderbird ESR 140.11, Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12. [email protected] 8.1 0.48% 2026-06-16 2026-07-15
CVE-2026-12327 Memory safety bugs present in Firefox ESR 140.11, Thunderbird ESR 140.11, Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12. [email protected] 8.1 0.41% 2026-06-16 2026-06-17
CVE-2026-12326 Memory safety bugs present in Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 152 and Thunderbird 152. [email protected] 8.1 0.29% 2026-06-16 2026-07-14
CVE-2026-12325 Denial-of-service in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12. [email protected] 6.5 0.24% 2026-06-16 2026-06-17
CVE-2026-12324 Incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12. [email protected] 7.3 0.22% 2026-06-16 2026-06-17
CVE-2026-12323 Spoofing issue in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 152 and Thunderbird 152. [email protected] 5.4 0.17% 2026-06-16 2026-06-17
CVE-2026-12322 Clickjacking issue in the Widget: Gtk component. This vulnerability was fixed in Firefox 152 and Thunderbird 152. [email protected] 5.4 0.17% 2026-06-16 2026-06-17
CVE-2026-12321 JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 152 and Thunderbird 152. [email protected] 5.4 0.16% 2026-06-16 2026-06-17
CVE-2026-12320 Information disclosure in the Password Manager component. This vulnerability was fixed in Firefox 152 and Thunderbird 152. [email protected] 4.3 0.18% 2026-06-16 2026-06-17
«« 第一頁 « 上一頁 第 1 / 181 頁 下一頁 »
cvelogic Threat Intelligence