Known vulnerabilities in Firefox ESR 60.0.2 - page 8

Vendor: Mozilla
Software: Firefox ESR
Version: 60.0.2
Software CPE: cpe:2.3:a:mozilla:firefox_esr:*:*:*:*:*:*:*:*
Total vulnerabilities: 203
Public exploits: 14
Known exploited (KEV): 7
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Firefox ESR version 60.0.2 Firefox ESR 60.0.2 is affected by 203 vulnerabilities: 5 critical, 109 high, 48 medium, 41 low Critical High Medium Low

Vulnerabilities (203)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU33032 - Improper input validation
CVE-2019-11711
CWE-20 High
No
No
60.8.0 23.07.2019 SB2019072317
SB2019082322
SB2019073024
and 13 more
#VU33033 - Cross-Site Request Forgery (CSRF)
CVE-2019-11712
CWE-352 High
No
No
60.8.0 23.07.2019 SB2019072318
SB2019082322
SB2019073024
and 13 more
#VU33034 - Use After Free
CVE-2019-11713
CWE-416 High
No
No
60.8.0 23.07.2019 SB2019072319
SB2019082322
SB2019073024
and 13 more
#VU33035 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-11715
CWE-79 Low
No
No
60.8.0 23.07.2019 SB2019072320
SB2019082322
SB2019073024
and 13 more
#VU33036 - Improper input validation
CVE-2019-11717
CWE-20 Medium
No
No
60.8.0 23.07.2019 SB2019072321
SB2019082322
SB2019073024
and 13 more
#VU33037 - Out-of-bounds read
CVE-2019-11719
CWE-125 Medium
No
No
60.8.0 23.07.2019 SB2019072322
SB2019082322
SB2019073024
and 17 more
#VU18860 - Permissions, Privileges, and Access Controls
CVE-2019-11708
CWE-264 High
Public exploit available
Exploited
60.7.2 20.06.2019 SB2019062002
SB2019062101
SB2019062102
and 19 more
#VU18824 - Type confusion
CVE-2019-11707
CWE-843 Critical
Public exploit available
Exploited
60.7.1 18.06.2019 SB2019061805
SB2019061904
SB2019061905
and 21 more
#VU18563 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2019-11698
CWE-451 Low
No
No
60.7.0 22.05.2019 SB2019052103
SB2019052104
SB2019052201
and 19 more
#VU18559 - Missing release of memory after effective lifetime
CVE-2019-11694
CWE-401 Low
No
No
60.7.0 21.05.2019 SB2019052103
SB2019052104
SB2019052204
and 5 more
#VU18558 - Memory corruption
CVE-2019-11693
CWE-119 High
No
No
60.7.0 21.05.2019 SB2019052103
SB2019052104
SB2019052201
and 19 more
#VU18557 - Use After Free
CVE-2019-11692
CWE-416 High
No
No
60.7.0 21.05.2019 SB2019052103
SB2019052104
SB2019052201
and 19 more
#VU18556 - Use After Free
CVE-2019-11691
CWE-416 High
No
No
60.7.0 21.05.2019 SB2019052103
SB2019052104
SB2019052201
and 19 more
#VU18554 - Use After Free
CVE-2019-9820
CWE-416 High
No
No
60.7.0 21.05.2019 SB2019052103
SB2019052104
SB2019052201
and 18 more
#VU18553 - Improper input validation
CVE-2019-9819
CWE-20 High
No
No
60.7.0 21.05.2019 SB2019052103
SB2019052104
SB2019052201
and 19 more
#VU18552 - Use After Free
CVE-2019-9818
CWE-416 High
No
No
60.7.0 21.05.2019 SB2019052103
SB2019052104
SB2019052204
and 5 more
#VU18551 - Permissions, Privileges, and Access Controls
CVE-2019-9817
CWE-264 Medium
No
No
60.7.0 21.05.2019 SB2019052103
SB2019052104
SB2019052201
and 19 more
#VU18550 - Type confusion
CVE-2019-9816
CWE-843 Medium
No
No
60.7.0 21.05.2019 SB2019052103
SB2019052104
SB2019052201
and 16 more
#VU18549 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2019-9815
CWE-362 Medium
No
No
60.7.0 21.05.2019 SB2019052103
SB2019052104
SB2019052204
and 5 more
#VU17708 - Use After Free
CVE-2019-7317
CWE-416 Low
No
No
60.7.0 14.02.2019 SB2019011606
SB2019041812
SB2019042401
and 46 more


Showing elements 141 - 160 out of 203