Known vulnerabilities in firefox (Alpine package) - page 3

Software CPE: cpe:2.3:o:alpine:firefox_alpine_package:*:*:*:*:*:alpine_linux:*:*
Total vulnerabilities: 146
Public exploits: 8
Known exploited (KEV): 5
Highest CVSSv4 Score: 8.7

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting firefox (Alpine package) firefox (Alpine package) is affected by 146 known vulnerabilities: 5 critical, 49 high, 45 medium, 47 low Critical High Medium Low

Vulnerabilities (146)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU48235 - Use After Free
CVE-2020-26950
CWE-416 High
Available
No
82.0.3-r0 09.11.2020 SB2020110949
SB2020110950
SB2020111001
and 25 more
#VU47743 - Exposure of sensitive information to an unauthorized actor
CVE-2020-15680
CWE-200 Low
No
No
- 20.10.2020 SB2020102042
SB2020110208
SB2020112902
and 2 more
#VU47742 - Memory corruption
CVE-2020-15254
CWE-119 High
No
No
- 16.10.2020 SB2020102041
SB2020102042
SB2020110208
and 3 more
#VU46967 - Memory corruption
CVE-2020-15674
CWE-119 High
No
No
- 23.09.2020 SB2020092302
SB2020092316
SB2020092330
and 1 more
#VU46966 - Memory corruption
CVE-2020-15673
CWE-119 High
No
No
- 23.09.2020 SB2020092302
SB2020092304
SB2020092308
and 21 more
#VU46965 - Use After Free
CVE-2020-15678
CWE-416 Medium
No
No
- 23.09.2020 SB2020092302
SB2020092304
SB2020092314
and 21 more
#VU46964 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-15676
CWE-79 Medium
No
No
- 23.09.2020 SB2020092302
SB2020092304
SB2020092310
and 21 more
#VU46963 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2020-15677
CWE-451 Low
No
No
- 23.09.2020 SB2020092302
SB2020092304
SB2020092312
and 21 more
#VU46962 - Use After Free
CVE-2020-15675
CWE-416 High
No
No
- 23.09.2020 SB2020092302
SB2020092317
SB2020092330
and 2 more
#VU46974 - Out-of-bounds write
CVE-2020-14393
CWE-787 Low
No
No
- 16.09.2020 SB2020092318
SB2020092320
SB2020092321
and 3 more
#VU46023 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-15668
CWE-362 Low
No
No
- 25.08.2020 SB2020082520
SB2020083015
SB2020090316
and 2 more
#VU46022 - Heap-based Buffer Overflow
CVE-2020-15667
CWE-122 Low
No
No
- 25.08.2020 SB2020082520
SB2020083014
#VU46021 - Exposure of sensitive information to an unauthorized actor
CVE-2020-15666
CWE-200 Low
No
No
- 25.08.2020 SB2020082520
SB2020083013
SB2020090316
and 2 more
#VU46020 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2020-15665
CWE-451 Low
No
No
- 25.08.2020 SB2020082520
SB2020083012
SB2020082630
and 1 more
#VU46019 - Cryptographic Issues
CVE-2020-6829
CWE-310 Low
No
No
- 25.08.2020 SB2020082520
SB2020072974
SB2020072975
and 18 more
#VU46017 - Memory corruption
CVE-2020-15670
CWE-119 High
No
No
- 25.08.2020 SB2020082514
SB2020082520
SB2020082619
and 7 more
#VU46016 - Resource Management Errors
CVE-2020-15664
CWE-399 Medium
No
No
- 25.08.2020 SB2020082514
SB2020082520
SB2020082618
and 27 more
#VU46015 - Permissions, Privileges, and Access Controls
CVE-2020-15663
CWE-264 Low
No
No
- 25.08.2020 SB2020082520
SB2020082619
SB2020083004
and 6 more
#VU45798 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-12401
CWE-327 Low
No
No
- 20.08.2020 SB2020082004
SB2020082005
SB2020072965
and 19 more
#VU45797 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-12400
CWE-327 Low
No
No
- 20.08.2020 SB2020082004
SB2020082005
SB2020072964
and 19 more


Showing elements 41 - 60 out of 146