Known vulnerabilities in Firefox ESR 128.2.0 - page 12

Vendor: Mozilla
Software: Firefox ESR
Version: 128.2.0
Software CPE: cpe:2.3:a:mozilla:firefox_esr:*:*:*:*:*:*:*:*
Total vulnerabilities: 281
Public exploits: 3
Known exploited (KEV): 1
Highest CVSSv4 Score: 8.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Firefox ESR version 128.2.0 Firefox ESR 128.2.0 is affected by 281 vulnerabilities: 1 critical, 160 high, 83 medium, 37 low Critical High Medium Low

Vulnerabilities (281)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU106360 - Memory corruption
CVE-2025-3030
CWE-119 High
No
No
128.9.0 01.04.2025 SB2025040129
SB2025040130
SB2025040131
and 40 more
#VU106359 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2025-3029
CWE-451 Medium
No
No
128.9.0 01.04.2025 SB2025040129
SB2025040130
SB2025040131
and 40 more
#VU106358 - Use After Free
CVE-2025-3028
CWE-416 High
No
No
115.22.0, 128.9.0 01.04.2025 SB2025040129
SB2025040130
SB2025040131
and 40 more
#VU106105 - Improper input validation
CVE-2025-2857
CWE-20 High
Public exploit available
No
115.21.1, 128.8.1 27.03.2025 SB2025032724
#VU105319 - Memory corruption
CVE-2025-1938
CWE-119 High
No
No
128.8.0 05.03.2025 SB2025030502
SB2025030503
SB2025030504
and 35 more
#VU105318 - Improper input validation
CVE-2025-1936
CWE-20 Low
No
No
128.8.0 05.03.2025 SB2025030502
SB2025030503
SB2025030504
and 33 more
#VU105308 - Improper Restriction of Rendered UI Layers or Frames
CVE-2025-1935
CWE-1021 Low
No
No
128.8.0 05.03.2025 SB2025030502
SB2025030503
SB2025030504
and 33 more
#VU105307 - Resource Management Errors
CVE-2025-1934
CWE-399 Medium
No
No
128.8.0 05.03.2025 SB2025030502
SB2025030503
SB2025030504
and 33 more
#VU105306 - Out-of-bounds write
CVE-2025-1932
CWE-787 High
No
No
128.8.0 05.03.2025 SB2025030502
SB2025030503
SB2025030504
and 33 more
#VU105305 - Integer overflow
CWE-190 High
No
No
115.21.0, 128.8.0 05.03.2025 SB2025030502
#VU105304 - Memory corruption
CVE-2025-1937
CWE-119 High
No
No
115.21.0, 128.8.0 05.03.2025 SB2025030502
SB2025030503
SB2025030504
and 36 more
#VU105303 - Memory corruption
CVE-2025-1933
CWE-119 High
No
No
115.21.0, 128.8.0 05.03.2025 SB2025030502
SB2025030503
SB2025030504
and 33 more
#VU105302 - Use After Free
CVE-2025-1931
CWE-416 High
No
No
115.21.0, 128.8.0 04.03.2025 SB2025030502
SB2025030503
SB2025030504
and 33 more
#VU105301 - Use After Free
CVE-2025-1930
CWE-416 High
No
No
115.21.0, 128.8.0 04.03.2025 SB2025030502
SB2025030503
SB2025030504
and 23 more
#VU103610 - Improper Certificate Validation
CVE-2025-1014
CWE-295 Low
No
No
128.7.0 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103609 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-1013
CWE-362 Low
No
No
128.7.0 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103608 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-1011
CWE-94 High
No
No
128.7.0 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103606 - Use After Free
CVE-2025-1012
CWE-416 High
No
No
115.20.0, 128.7.0 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103605 - Use After Free
CVE-2025-1010
CWE-416 High
No
No
115.20.0, 128.7.0 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103604 - Use After Free
CVE-2025-1009
CWE-416 High
No
No
115.20.0, 128.7.0 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more


Showing elements 221 - 240 out of 281