Known vulnerabilities in Mozilla Firefox 52

Vendor: Mozilla
Version: 52
Software CPE: cpe:2.3:a:mozilla:mozilla_firefox:*:*:*:*:*:*:*:*
Total vulnerabilities: 89
Public exploits: 3
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Mozilla Firefox version 52 Mozilla Firefox 52 is affected by 89 vulnerabilities: 45 high, 9 medium, 35 low Critical High Medium Low

Vulnerabilities (89)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU9870 - Covert Timing Channel
CWE-385 Medium
No
No
- 04.01.2018 SB2018010414
#VU8634 - Use After Free
CVE-2017-7805
CWE-416 High
No
No
- 28.09.2017 SB2017092807
SB2017092901
SB2017100201
and 19 more
#VU8620 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2017-7817
CWE-451 Medium
No
No
- 28.09.2017 SB2017092807
#VU8621 - Memory corruption
CVE-2017-7824
CWE-119 High
No
No
- 28.09.2017 SB2017092807
SB2017092901
SB2017100201
and 17 more
#VU8622 - Permissions, Privileges, and Access Controls
CVE-2017-7812
CWE-264 Medium
No
No
- 28.09.2017 SB2017092807
SB2017100306
SB2017100603
and 1 more
#VU8623 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2017-7814
CWE-451 Medium
No
No
- 28.09.2017 SB2017092807
SB2017092901
SB2017100201
and 17 more
#VU8624 - Missing release of memory after effective lifetime
CVE-2017-7813
CWE-401 Low
No
No
- 28.09.2017 SB2017092807
SB2017100306
SB2017100603
and 1 more
#VU8625 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2017-7825
CWE-451 Medium
No
No
- 28.09.2017 SB2017092807
SB2017092901
SB2017100906
and 6 more
#VU8626 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2017-7815
CWE-451 Medium
No
No
- 28.09.2017 SB2017092807
SB2017100306
SB2017100603
and 1 more
#VU8627 - Permissions, Privileges, and Access Controls
CVE-2017-7816
CWE-264 Low
No
No
- 28.09.2017 SB2017092807
SB2017100306
SB2017100603
and 1 more
#VU8628 - Permissions, Privileges, and Access Controls
CVE-2017-7821
CWE-264 Low
No
No
- 28.09.2017 SB2017092807
SB2017100306
SB2017100603
and 1 more
#VU8629 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2017-7823
CWE-79 Low
No
No
- 28.09.2017 SB2017092807
SB2017092901
SB2017100201
and 17 more
#VU8630 - Cryptographic Issues
CVE-2017-7822
CWE-310 Low
No
No
- 28.09.2017 SB2017092807
SB2017100306
SB2017100603
and 1 more
#VU8631 - Permissions, Privileges, and Access Controls
CVE-2017-7820
CWE-264 Low
No
No
- 28.09.2017 SB2017092807
SB2017100306
SB2017100603
and 1 more
#VU8632 - Memory corruption
CVE-2017-7811
CWE-119 High
No
No
- 28.09.2017 SB2017092807
SB2017100306
SB2017100603
and 1 more
#VU8633 - Memory corruption
CVE-2017-7810
CWE-119 High
No
No
- 28.09.2017 SB2017092807
SB2017092901
SB2017100201
and 17 more
#VU8618 - Use After Free
CVE-2017-7819
CWE-416 High
No
No
- 28.09.2017 SB2017092807
SB2017092901
SB2017100201
and 17 more
#VU8617 - Use After Free
CVE-2017-7818
CWE-416 High
No
No
- 28.09.2017 SB2017092807
SB2017092901
SB2017100201
and 17 more
#VU8616 - Use After Free
CVE-2017-7793
CWE-416 High
No
No
- 28.09.2017 SB2017092807
SB2017092901
SB2017100201
and 17 more
#VU8110 - Improper input validation
CWE-20 Low
No
No
- 06.09.2017 SB2017090610


Showing elements 1 - 20 out of 89