Mozilla
7,140 known vulnerabilities
Top Products
When scanning QR codes, Firefox for Android would have allowed navigation to some URLs that do not point to web content.
Malicious websites could have confused Firefox into showing the wrong origin when asking to launch a program and handlin
After accepting an untrusted certificate, handling an empty pkcs7 sequence as part of the certificate data could have le
A race condition could have allowed bypassing the fullscreen notification which could have lead to a fullscreen window s
Securitypolicyviolation events could have leaked cross-origin information for frame-ancestors violations. This vulnerabi
The constructed curl command from the "Copy as curl" feature in DevTools was not properly escaped for PowerShell. This c
When navigating from inside an iframe while requesting fullscreen access, an attacker-controlled tab could have made the
When inserting text while in edit mode, some characters might have lead to out-of-bounds memory access causing a potenti
When resizing a popup while requesting fullscreen access, the popup would have become unable to leave fullscreen mode. T
Certain network request objects were freed too early when releasing a network request handle. This could have lead to a
Malicious websites could have tricked users into accepting launching a program to handle an external URL protocol. This
Applying a CSS filter effect could have accessed out of bounds memory. This could have lead to a heap-buffer-overflow ca
Constructing audio sinks could have lead to a race condition when playing audio files and closing windows. This could ha
If Firefox was installed to a world-writable directory, a local privilege escalation could occur when Firefox searched t
The search term could have been specified externally to trigger SQL injection. This vulnerability affects Firefox for iO
When displaying the sender of an email, and the sender name contained the Braille Pattern Blank space character multiple
If an attacker was able to corrupt the methods of an Array object in JavaScript via prototype pollution, they could have
An attacker could have sent a message to the parent process where the contents were used to double-index into a JavaScri
When viewing an email message A, which contains an attached message B, where B is encrypted or digitally signed or both,
When importing a revoked key that specified key compromise as the revocation reason, Thunderbird did not update the exis
After a VR Process is destroyed, a reference to it may have been retained and used, leading to a use-after-free and pote
<code>NSSToken</code> objects were referenced via direct points, and could have been accessed in an unsafe way on differ
Mozilla developers Kershaw Chang, Ryan VanderMeulen, and Randell Jesup reported memory safety bugs present in Firefox 97
It may be possible for an attacker to craft an email message that causes Thunderbird to perform an out-of-bounds write o
Mozilla VPN can load an OpenSSL configuration file from an unsecured directory. A user or attacker with limited privileg
Mozilla developers and community members Gabriele Svelto, Sebastian Hengst, Randell Jesup, Luan Herrera, Lars T Hansen,
If a domain name contained a RTL character, it would cause the domain to be rendered to the right of the path. This coul
It was possible to construct specific XSLT markup that would be able to bypass an iframe sandbox. This vulnerability aff
Mozilla developers and community members Julian Hector, Randell Jesup, Gabriele Svelto, Tyson Smith, Christian Holler, a
When transitioning in and out of fullscreen mode, a graphics object was not correctly protected; resulting in memory cor
An out of date graphics library (Angle) likely contained vulnerabilities that could potentially be exploited. This vulne
When receiving an OpenPGP/MIME signed email message that contains an additional outer MIME message layer, for example a
During the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated wi
An OAuth session fixation vulnerability existed in the VPN login flow, where an attacker could craft a custom login URL,
A vulnerability was found in davidmoreno onion. It has been rated as problematic. Affected by this issue is the function
A vulnerability found in nss. By this security vulnerability, nss client auth crash without a user certificate in the da
This affects the package convict before 6.2.3. This is a bypass of [CVE-2022-22143](https://security.snyk.io/vuln/SNYK-J
Hawk is an HTTP authentication scheme providing mechanisms for making authenticated HTTP requests with partial cryptogra
Improved Host header checks to reject requests not sent to a well-known local hostname or IP, or the server-specified ho
The package convict before 6.2.2 are vulnerable to Prototype Pollution via the convict function due to missing validatio
It was possible to recreate previous cursor spoofing attacks against users with a zoomed native cursor. This vulnerabili
Using the Location API in a loop could have caused severe application hangs and crashes. This vulnerability affects Thun
When receiving a URL through a SEND intent, Firefox would have searched for the text, but subsequent usages of the addre
Documents loaded with the CSP sandbox directive could have escaped the sandbox's script restriction by embedding additio
Using XMLHttpRequest, an attacker could have identified installed applications by probing error messages for loading ext
When invoking protocol handlers for external protocols, a supplied parameter URL containing spaces was not properly esca
WebExtensions with the correct permissions were able to create and install ServiceWorkers for third-party websites that
Failure to correctly record the location of live pointers across wasm instance calls resulted in a GC occurring within t
By misusing a race in our notification code, an attacker could have forcefully hidden the notification for pages that ha
An incorrect type conversion of sizes from 64bit to 32bit integers allowed an attacker to corrupt memory leading to a po
Frequently Asked Questions
How many CVEs affect Mozilla?
Mozilla has 7,140 CVE records in our database, including 872 critical and 3343 high severity vulnerabilities. 11 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Mozilla vulnerabilities?
Mozilla has 872 critical severity (CVSS 9.0+) and 3343 high severity (CVSS 7.0-8.9) vulnerabilities. 11 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Mozilla vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Mozilla products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Mozilla Vulnerabilities
CyberStrike scans your infrastructure for Mozilla vulnerabilities and provides real-time remediation guidance.
Get Started