Known vulnerabilities in Firefox ESR - page 32

Vendor: Mozilla
Software: Firefox ESR
Software CPE: cpe:2.3:a:mozilla:firefox_esr:*:*:*:*:*:*:*:*
Total vulnerabilities: 998
Public exploits: 30
Known exploited (KEV): 13
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Firefox ESR Firefox ESR is affected by 998 known vulnerabilities: 11 critical, 508 high, 266 medium, 213 low Critical High Medium Low

Vulnerabilities (998)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU60414 - Improper control of a resource through its lifetime
CVE-2022-22763
CWE-664 Medium
No
No
91.6.0 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 29 more
#VU59382 - Memory corruption
CVE-2022-22751
CWE-119 High
No
No
91.5.0 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 27 more
#VU59381 - Security Features
CVE-2022-22739
CWE-254 Low
No
No
91.5.0 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 27 more
#VU59379 - Improper input validation
CVE-2022-22747
CWE-20 Low
No
No
91.5.0 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 36 more
#VU59378 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-22744
CWE-78 Low
No
No
91.5.0 11.01.2022 SB2022011114
SB2022011115
SB2022011849
and 4 more
#VU59377 - Exposure of sensitive information to an unauthorized actor
CVE-2022-22745
CWE-200 Low
No
No
91.5.0 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 27 more
#VU59376 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-22748
CWE-451 Medium
No
No
91.5.0 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 26 more
#VU59373 - Security Features
CVE-2021-4140
CWE-254 High
No
No
91.5.0 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 28 more
#VU59372 - Use After Free
CVE-2022-22737
CWE-416 High
No
No
91.5.0 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 27 more
#VU59371 - Heap-based Buffer Overflow
CVE-2022-22738
CWE-122 High
No
No
91.5.0 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 27 more
#VU59370 - Use After Free
CVE-2022-22740
CWE-416 High
No
No
91.5.0 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 28 more
#VU59369 - Improper Restriction of Rendered UI Layers or Frames
CVE-2022-22741
CWE-1021 Medium
No
No
91.5.0 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 28 more
#VU59368 - Out-of-bounds write
CVE-2022-22742
CWE-787 Medium
No
No
91.5.0 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 27 more
#VU59367 - Improper Restriction of Rendered UI Layers or Frames
CVE-2022-22743
CWE-1021 Medium
No
No
91.5.0 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 27 more
#VU59366 - Improper Restriction of Rendered UI Layers or Frames
CVE-2022-22746
CWE-1021 Low
No
No
91.5.0 11.01.2022 SB2022011114
SB2022011115
SB2022011849
and 4 more
#VU58611 - Improper input validation
CVE-2021-43541
CWE-20 Low
No
No
91.4.0 07.12.2021 SB2021120711
SB2021120712
SB2021120818
and 29 more
#VU58608 - Use After Free
CVE-2021-43539
CWE-416 High
No
No
91.4.0 07.12.2021 SB2021120711
SB2021120712
SB2021120818
and 30 more
#VU58607 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2021-43538
CWE-451 Medium
No
No
91.4.0 07.12.2021 SB2021120711
SB2021120712
SB2021120818
and 29 more
#VU58586 - Type conversion
CVE-2021-43537
CWE-704 High
No
No
91.4.0 07.12.2021 SB2021120711
SB2021120712
SB2021120818
and 29 more
#VU58585 - Exposure of sensitive information to an unauthorized actor
CVE-2021-43536
CWE-200 Low
No
No
91.4.0 07.12.2021 SB2021120711
SB2021120712
SB2021120818
and 29 more


Showing elements 621 - 640 out of 998