Mozilla
7,140 known vulnerabilities
Top Products
A use-after-free vulnerability can occur when deleting an input element during a mutation event handler triggered by foc
A buffer overflow can occur when rendering canvas content while adjusting the height and width of the canvas element dyn
Service workers can use redirection to avoid the tainting of cross-origin resources in some instances, allowing a malici
A use-after-free in nsINode::ReplaceOrInsertBefore during DOM operations resulting in potentially exploitable crashes. T
It was found that Diffie Hellman Client key exchange handling in NSS 3.21.x was vulnerable to small subgroup confinement
nss before version 3.30 is vulnerable to a remote denial of service during the session handshake when using SessionTicke
In Apache Spark 2.1.0 to 2.1.2, 2.2.0 to 2.2.1, and 2.3.0, it's possible for a malicious user to construct a URL pointin
Plaintext of decrypted emails can leak through by user submitting an embedded form. This vulnerability affects Thunderbi
Using remote content in encrypted messages can lead to the disclosure of plaintext. This vulnerability affects Thunderbi
Mozilla developers backported selected changes in the Skia library. These changes correct memory corruption issues inclu
If a text string that happens to be a filename in the operating system's native format is dragged and dropped onto the a
If a URL using the "file:" protocol is dragged and dropped onto an open tab that is running in a different child process
A use-after-free vulnerability can occur during WebGL operations. While this results in a potentially exploitable crash,
A buffer overflow was found during UTF8 to Unicode string conversion within JavaScript with extremely large amounts of d
A vulnerability exists in XSLT during number formatting where a negative buffer size may be allocated in some instances,
The JSON Viewer displays clickable hyperlinks for strings that are parseable as URLs, including "javascript:" links. If
A mechanism to bypass Content Security Policy (CSP) protections on sites that have a "script-src" policy of "'strict-dyn
In the Windows 10 April 2018 Update, Windows Defender SmartScreen honors the "SEE_MASK_FLAG_NO_UI" flag associated with
The filename appearing in the "Downloads" panel improperly renders some Unicode characters, allowing for the file name t
The Live Bookmarks page and the PDF viewer can run injected script content if a user pastes script from the clipboard in
It is possible to spoof the filename of an attachment and display an arbitrary attachment name. This could lead to a use
If manipulated hyperlinked text with "chrome:" URL contained in it is dragged and dropped on the "home" icon, the home p
Sites can bypass security checks on permissions to install lightweight themes by manipulating the "baseURI" property of
The web console and JavaScript debugger do not sanitize all output that can be hyperlinked. Both will display "chrome:"
WebExtensions can use request redirection and a "filterReponseData" filter to bypass host permission settings to redirec
In 32-bit versions of Firefox, the Adobe Flash plugin setting for "Enable Adobe Flash protected mode" is unchecked by de
Content Security Policy (CSP) is not applied correctly to all parts of multipart content sent with the "multipart/x-mixe
If a malicious attacker has used another vulnerability to gain full control over a content process, they may be able to
Plaintext of decrypted emails can leak through the src attribute of remote images, or links. This vulnerability affects
Crafted message headers can cause a Thunderbird process to hang on receiving the message. This vulnerability affects Thu
WebRTC can use a "WrappedI420Buffer" pixel buffer but the owning image object can be freed while it is still in use. Thi
An integer overflow can occur in the Skia library due to 32-bit integer use in an array without integer overflow checks,
The PDF viewer does not sufficiently sanitize PostScript calculator functions, allowing malicious JavaScript to be injec
Same-origin protections for the PDF viewer can be bypassed, allowing a malicious site to intercept messages meant for th
A use-after-free vulnerability can occur while adjusting layout during SVG animations with text paths. This results in a
A use-after-free vulnerability can occur while enumerating attributes during SVG animations with clip paths. This result
If websocket data is sent with mixed text and binary in a single message, the binary data can be corrupted. This can res
WebExtensions with the appropriate permissions can attach content scripts to Mozilla sites such as accounts.firefox.com
Memory safety bugs were reported in Firefox 59. Some of these bugs showed evidence of memory corruption and we presume t
Memory safety bugs were reported in Firefox 59, Firefox ESR 52.7, and Thunderbird 52.7. Some of these bugs showed eviden
A use-after-free vulnerability can occur in the compositor during certain graphics operations when a raw pointer is used
The libtremor library has the same flaw as CVE-2018-5146. This library is used by Firefox in place of libvorbis on Andro
An out of bounds memory write while processing Vorbis audio data was reported through the Pwn2Own contest. This vulnerab
Memory safety bugs were reported in Firefox ESR 52.6. These bugs showed evidence of memory corruption and we presume tha
An integer overflow can occur during conversion of text to some Unicode character sets due to an unchecked length parame
URLs using "javascript:" have the protocol removed when pasted into the addressbar to protect users from cross-site scri
If Media Capture and Streams API permission is requested from documents with "data:" or "blob:" URLs, the permission not
A vulnerability in the notifications Push API where notifications can be sent through service workers by web content wit
Image for moz-icons can be accessed through the "moz-icon:" protocol through script in web content even when otherwise p
A spoofing vulnerability can occur when a malicious site with an extremely long domain name is opened in an Android Cust
Frequently Asked Questions
How many CVEs affect Mozilla?
Mozilla has 7,140 CVE records in our database, including 872 critical and 3343 high severity vulnerabilities. 11 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Mozilla vulnerabilities?
Mozilla has 872 critical severity (CVSS 9.0+) and 3343 high severity (CVSS 7.0-8.9) vulnerabilities. 11 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Mozilla vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Mozilla products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Mozilla Vulnerabilities
CyberStrike scans your infrastructure for Mozilla vulnerabilities and provides real-time remediation guidance.
Get Started