Known vulnerabilities in Mozilla Firefox 85.0.2

Vendor: Mozilla
Version: 85.0.2
Software CPE: cpe:2.3:a:mozilla:mozilla_firefox:*:*:*:*:*:*:*:*
Total vulnerabilities: 106
Public exploits: 4
Known exploited (KEV): 2
Highest CVSSv4 Score: 8.8

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Mozilla Firefox version 85.0.2 Mozilla Firefox 85.0.2 is affected by 106 vulnerabilities: 2 critical, 44 high, 32 medium, 28 low Critical High Medium Low

Vulnerabilities (106)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU62763 - Memory corruption
CVE-2022-29917
CWE-119 High
No
No
100.0 03.05.2022 SB2022050314
SB2022050425
SB2022050426
and 30 more
#VU62760 - Security Features
CVE-2022-29912
CWE-254 Low
No
No
100.0 03.05.2022 SB2022050314
SB2022050425
SB2022050426
and 31 more
#VU62759 - Security Features
CVE-2022-29911
CWE-254 Medium
No
No
100.0 03.05.2022 SB2022050314
SB2022050425
SB2022050426
and 31 more
#VU62758 - Exposure of sensitive information to an unauthorized actor
CVE-2022-29916
CWE-200 Low
No
No
100.0 03.05.2022 SB2022050314
SB2022050425
SB2022050426
and 30 more
#VU62757 - Permissions, Privileges, and Access Controls
CVE-2022-29909
CWE-264 High
No
No
100.0 03.05.2022 SB2022050314
SB2022050425
SB2022050426
and 30 more
#VU62756 - Insufficient UI Warning of Dangerous Operations
CVE-2022-29914
CWE-357 Medium
No
No
100.0 03.05.2022 SB2022050314
SB2022050425
SB2022050426
and 30 more
#VU61892 - Memory corruption
CVE-2022-28289
CWE-119 High
No
No
99.0 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 24 more
#VU61890 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-28286
CWE-451 Medium
No
No
99.0 05.04.2022 SB2022040526
SB2022040628
SB2022040629
and 23 more
#VU61889 - Resource Management Errors
CVE-2022-28285
CWE-399 Low
No
No
99.0 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 26 more
#VU61886 - Use After Free
CVE-2022-28282
CWE-416 High
Public exploit available
No
99.0 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 24 more
#VU61885 - Out-of-bounds write
CVE-2022-28281
CWE-787 High
Public exploit available
No
99.0 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 24 more
#VU61884 - Use After Free
CVE-2022-1097
CWE-416 High
No
No
99.0 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 28 more
#VU61033 - Use After Free
CVE-2022-26486
CWE-416 Critical
No
Exploited
97.0.2 05.03.2022 SB2022030501
SB2022030720
SB2022030724
and 26 more
#VU61032 - Use After Free
CVE-2022-26485
CWE-416 Critical
Public exploit available
Exploited
97.0.2 05.03.2022 SB2022030501
SB2022030720
SB2022030724
and 28 more
#VU60411 - Security Features
CVE-2022-22761
CWE-254 Medium
No
No
97.0 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 30 more
#VU60409 - Exposure of sensitive information to an unauthorized actor
CVE-2022-22760
CWE-200 Medium
No
No
97.0 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 31 more
#VU60406 - Permissions, Privileges, and Access Controls
CVE-2022-22759
CWE-264 Medium
No
No
97.0 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 31 more
#VU60398 - Insufficient UI Warning of Dangerous Operations
CVE-2022-22756
CWE-357 Medium
No
No
97.0 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 30 more
#VU60395 - Permissions, Privileges, and Access Controls
CVE-2022-22754
CWE-264 High
No
No
97.0 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 29 more
#VU60372 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2022-22753
CWE-367 Low
No
No
97.0 08.02.2022 SB2022020837
SB2022021017
SB2022021113
and 8 more


Showing elements 1 - 20 out of 106