16,510 vulnerabilities published in 2018
A use-after-free vulnerability occurs during certain text input selection resulting in a potentially exploitable crash.
A use-after-free vulnerability in SMIL animation functions occurs when pointers to animation elements in an array are dr
A use-after-free vulnerability occurs when redirecting focus handling which results in a potentially exploitable crash.
A use-after-free vulnerability occurs during transaction processing in the editor during design mode interactions. This
A use-after-free vulnerability during XSLT processing due to the result handler being held by a freed handler during han
A use-after-free vulnerability during XSLT processing due to poor handling of template parameters. This results in a pot
A use-after-free vulnerability during XSLT processing due to a failure to propagate error conditions during matching whi
A use-after-free vulnerability when holding a selection during scroll events. This results in a potentially exploitable
A use-after-free vulnerability during changes in style when manipulating DOM elements. This results in a potentially exp
An out-of-bounds write vulnerability while decoding improperly formed BinHex format archives. This vulnerability affects
An out-of-bounds read when an HTTP/2 connection to a servers sends "DATA" frames with incorrect data content. This leads
A mechanism to bypass file system access protections in the sandbox using the file system request constructor through an
A buffer overflow in WebGL triggerable by web content, resulting in a potentially exploitable crash. This vulnerability
A use-after-free vulnerability in frame selection triggered by a combination of malicious script content and key presses
During DOM manipulations of the accessibility tree through script, the DOM tree can become out of sync with the accessib
Fixed potential buffer overflows in generated Firefox code due to CVE-2016-6354 issue in Flex. This vulnerability affect
Memory safety bugs were reported in Firefox 53 and Firefox ESR 52.1. Some of these bugs showed evidence of memory corrup
Memory safety bugs were reported in Firefox 53. Some of these bugs showed evidence of memory corruption and we presume t
A use-after-free vulnerability with the frameloader during tree reconstruction while regenerating CSS layout when attemp
A use-after-free vulnerability when using an incorrect URL during the reloading of a docshell. This results in a potenti
A use-after-free vulnerability during video control operations when a "<track>" element holds a reference to an older wi
A use-after-free vulnerability with content viewer listeners that results in a potentially exploitable crash. This vulne
A use-after-free and use-after-scope vulnerability when logging errors from headers for XML HTTP Requests (XHR). This co
A use-after-free vulnerability in IndexedDB when one of its objects is destroyed in memory while a method on it is still
A number of security vulnerabilities in the Graphite 2 library including out-of-bounds reads, buffer overflow reads and
Memory safety bugs were reported in Firefox 54, Firefox ESR 52.2, and Thunderbird 52.2. Some of these bugs showed eviden
Memory safety bugs were reported in Firefox 54. Some of these bugs showed evidence of memory corruption and we presume t
A use-after-free vulnerability can occur when reading an image observer during frame reconstruction after the observer h
A buffer overflow can occur when manipulating Accessible Rich Internet Applications (ARIA) attributes within the DOM. Th
A buffer overflow can occur when the image renderer attempts to paint non-displayable SVG elements. This results in a po
When an "iframe" has a "sandbox" attribute and its content is specified using "srcdoc", that content does not inherit th
A buffer overflow will occur when viewing a certificate in the certificate manager if the certificate has an extremely l
A use-after-free vulnerability can occur in the Fetch API when the worker or the associated window are freed when still
A use-after-free vulnerability can occur in WebSockets when the object holding the connection is freed before the discon
A use-after-free vulnerability can occur while re-computing layout for a "marquee" element during window resizing where
A use-after-free vulnerability can occur when manipulating the DOM during the resize event of an image element. If these
A use-after-free vulnerability can occur when an editor DOM node is deleted prematurely during tree traversal while stil
Memory safety bugs were reported in Firefox 55 and Firefox ESR 52.3. Some of these bugs showed evidence of memory corrup
Memory safety bugs were reported in Firefox 55. Some of these bugs showed evidence of memory corruption and we presume t
A use-after-free vulnerability can occur when manipulating arrays of Accessible Rich Internet Applications (ARIA) elemen
A use-after-free vulnerability can occur in design mode when image objects are resized if objects referenced during the
A vulnerability where WebExtensions can download and attempt to open a file of some non-executable file types. This can
A buffer overflow occurs when drawing and validating elements with the ANGLE graphics library, used for WebGL content. T
Memory safety bugs were reported in Firefox 56 and Firefox ESR 52.4. Some of these bugs showed evidence of memory corrup
Memory safety bugs were reported in Firefox 56. Some of these bugs showed evidence of memory corruption and we presume t
A use-after-free vulnerability can occur when flushing and resizing layout because the "PressShell" object has been free
Memory safety bugs were reported in Firefox 57 and Firefox ESR 52.5. Some of these bugs showed evidence of memory corrup
Memory safety bugs were reported in Firefox 57. Some of these bugs showed evidence of memory corruption and we presume t
A use-after-free vulnerability can occur during WebRTC connections when interacting with the DTMF timers. This results i
A use-after-free vulnerability can occur when the thread for a Web Worker is freed from memory prematurely instead of fr
Scan for 2018 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started