Known vulnerabilities in firefox-esr (Debian package) 91.6.1esr-1~deb11u1 - page 2

Vendor: Debian
Version: 91.6.1esr-1~deb11u1
Software CPE: cpe:2.3:o:debian:firefox-esr_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 28
Public exploits: 3
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting firefox-esr (Debian package) version 91.6.1esr-1~deb11u1 firefox-esr (Debian package) 91.6.1esr-1~deb11u1 is affected by 28 vulnerabilities: 14 high, 8 medium, 6 low Critical High Medium Low

Vulnerabilities (28)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU61892 - Memory corruption
CVE-2022-28289
CWE-119 High
No
No
91.8.0esr-1~deb10u1, 91.8.0esr-1~deb11u1 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 24 more
#VU61890 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-28286
CWE-451 Medium
No
No
91.8.0esr-1~deb10u1, 91.8.0esr-1~deb11u1 05.04.2022 SB2022040526
SB2022040628
SB2022040629
and 23 more
#VU61889 - Resource Management Errors
CVE-2022-28285
CWE-399 Low
No
No
91.8.0esr-1~deb10u1, 91.8.0esr-1~deb11u1 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 26 more
#VU61109 - Improper Access Control
CVE-2022-26386
CWE-284 Low
No
No
91.7.0esr-1~deb10u1, 91.7.0esr-1~deb11u1 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 24 more
#VU61105 - Use After Free
CVE-2022-26381
CWE-416 High
No
No
91.7.0esr-1~deb10u1, 91.7.0esr-1~deb11u1 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 27 more
#VU61104 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2022-26387
CWE-367 Medium
No
No
91.7.0esr-1~deb10u1, 91.7.0esr-1~deb11u1 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 27 more
#VU61103 - Permissions, Privileges, and Access Controls
CVE-2022-26384
CWE-264 Medium
No
No
91.7.0esr-1~deb10u1, 91.7.0esr-1~deb11u1 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 27 more
#VU61102 - Insufficient UI Warning of Dangerous Operations
CVE-2022-26383
CWE-357 Low
No
No
91.7.0esr-1~deb10u1, 91.7.0esr-1~deb11u1 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 27 more


Showing elements 21 - 40 out of 28