Show filters
1,460 Total Results
Displaying 11-20 of 1,460
Sort by:
Attacker Value
Unknown
CVE-2022-2200
Disclosure Date: December 22, 2022 (last updated October 08, 2023)
If an object prototype was corrupted by an attacker, they would have been able to set undesired attributes on a JavaScript object, leading to privileged code execution. This vulnerability affects Firefox < 102, Firefox ESR < 91.11, Thunderbird < 102, and Thunderbird < 91.11.
1
Attacker Value
Unknown
CVE-2025-1020
Disclosure Date: February 04, 2025 (last updated February 07, 2025)
Memory safety bugs present in Firefox 134 and Thunderbird 134. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 135 and Thunderbird < 135.
0
Attacker Value
Unknown
CVE-2025-1019
Disclosure Date: February 04, 2025 (last updated February 07, 2025)
The z-order of the browser windows could be manipulated to hide the fullscreen notification. This could potentially be leveraged to perform a spoofing attack. This vulnerability affects Firefox < 135 and Thunderbird < 135.
0
Attacker Value
Unknown
CVE-2025-1018
Disclosure Date: February 04, 2025 (last updated February 07, 2025)
The fullscreen notification is prematurely hidden when fullscreen is re-requested quickly by the user. This could have been leveraged to perform a potential spoofing attack. This vulnerability affects Firefox < 135 and Thunderbird < 135.
0
Attacker Value
Unknown
CVE-2025-1017
Disclosure Date: February 04, 2025 (last updated February 07, 2025)
Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 128.6, and Thunderbird 128.6. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 135, Firefox ESR < 128.7, Thunderbird < 128.7, and Thunderbird < 135.
0
Attacker Value
Unknown
CVE-2025-1016
Disclosure Date: February 04, 2025 (last updated February 07, 2025)
Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 115.19, Firefox ESR 128.6, Thunderbird 115.19, and Thunderbird 128.6. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 135, Firefox ESR < 115.20, Firefox ESR < 128.7, Thunderbird < 128.7, and Thunderbird < 135.
0
Attacker Value
Unknown
CVE-2025-1015
Disclosure Date: February 04, 2025 (last updated February 07, 2025)
The Thunderbird Address Book URI fields contained unsanitized links. This could be used by an attacker to create and export an address book containing a malicious payload in a field. For example, in the “Other” field of the Instant Messaging section. If another user imported the address book, clicking on the link could result in opening a web page inside Thunderbird, and that page could execute (unprivileged) JavaScript. This vulnerability affects Thunderbird < 128.7.
0
Attacker Value
Unknown
CVE-2025-1014
Disclosure Date: February 04, 2025 (last updated February 07, 2025)
Certificate length was not properly checked when added to a certificate store. In practice only trusted data was processed. This vulnerability affects Firefox < 135, Firefox ESR < 128.7, Thunderbird < 128.7, and Thunderbird < 135.
0
Attacker Value
Unknown
CVE-2025-1013
Disclosure Date: February 04, 2025 (last updated February 05, 2025)
A race condition could have led to private browsing tabs being opened in normal browsing windows. This could have resulted in a potential privacy leak. This vulnerability affects Firefox < 135, Firefox ESR < 128.7, Thunderbird < 128.7, and Thunderbird < 135.
0
Attacker Value
Unknown
CVE-2025-1012
Disclosure Date: February 04, 2025 (last updated February 07, 2025)
A race during concurrent delazification could have led to a use-after-free. This vulnerability affects Firefox < 135, Firefox ESR < 115.20, Firefox ESR < 128.7, Thunderbird < 128.7, and Thunderbird < 135.
0