Known vulnerabilities in firefox - page 25

Vendor: openEuler
Software: firefox
Software CPE: cpe:2.3:o:openeuler:firefox:*:*:*:*:*:openeuler:*:*
Total vulnerabilities: 601
Public exploits: 11
Known exploited (KEV): 4
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting firefox firefox is affected by 601 known vulnerabilities: 4 critical, 288 high, 175 medium, 134 low Critical High Medium Low

Vulnerabilities (601)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU99490 - Memory corruption
CVE-2024-10467
CWE-119 High
No
No
128.4.0-1, 128.8.0-1 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99489 - Resource Management Errors
CVE-2024-10466
CWE-399 Low
No
No
128.4.0-1, 128.8.0-1 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99488 - Insufficient UI Warning of Dangerous Operations
CVE-2024-10465
CWE-357 Low
No
No
128.4.0-1, 128.8.0-1 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99487 - Resource Management Errors
CVE-2024-10464
CWE-399 Low
No
No
128.4.0-1, 128.8.0-1 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99486 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2024-10462
CWE-451 Medium
No
No
128.4.0-1, 128.8.0-1 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99485 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-10461
CWE-79 Medium
No
No
128.4.0-1, 128.8.0-1 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99484 - Insufficient UI Warning of Dangerous Operations
CVE-2024-10460
CWE-357 Low
No
No
128.4.0-1, 128.8.0-1 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99482 - Exposure of sensitive information to an unauthorized actor
CVE-2024-10463
CWE-200 Low
No
No
128.4.0-1, 128.8.0-1 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99481 - Use After Free
CVE-2024-10459
CWE-416 High
No
No
128.4.0-1, 128.8.0-1 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99480 - Permissions, Privileges, and Access Controls
CVE-2024-10458
CWE-264 Medium
No
No
128.4.0-1, 128.8.0-1 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU97924 - Improper input validation
CVE-2024-9399
CWE-20 Low
No
No
128.3.0-2, 128.8.0-1 01.10.2024 SB2024100154
SB2024100155
SB2024100156
and 43 more
#VU97922 - Insufficient UI Warning of Dangerous Operations
CVE-2024-9397
CWE-357 Low
No
No
128.3.0-2, 128.8.0-1 01.10.2024 SB2024100154
SB2024100155
SB2024100156
and 43 more
#VU97918 - Permissions, Privileges, and Access Controls
CVE-2024-9394
CWE-264 Medium
No
No
128.3.0-2, 128.8.0-1 01.10.2024 SB2024100154
SB2024100155
SB2024100156
and 43 more
#VU97917 - Permissions, Privileges, and Access Controls
CVE-2024-9393
CWE-264 Medium
No
No
128.3.0-2, 128.8.0-1 01.10.2024 SB2024100154
SB2024100155
SB2024100156
and 43 more
#VU96733 - Type confusion
CVE-2024-8385
CWE-843 High
No
No
128.3.0-2 03.09.2024 SB2024090361
SB2024090501
SB2024090647
and 32 more
#VU93898 - Memory corruption
CVE-2024-6604
CWE-119 High
No
No
128.4.0-1, 128.8.0-1 09.07.2024 SB2024070955
SB2024070975
SB2024071077
and 39 more
#VU93895 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-6601
CWE-362 Medium
No
No
128.3.0-3, 128.8.0-1 09.07.2024 SB2024070955
SB2024070975
SB2024071077
and 39 more
#VU74842 - Memory corruption
CVE-2023-1945
CWE-119 Medium
No
No
79.0-32 11.04.2023 SB2023041129
SB2023041137
SB2023041138
and 39 more
#VU50886 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2021-23972
CWE-451 Low
No
No
79.0-32 23.02.2021 SB2021022318
SB2021050101
SB2021022634
and 1 more
#VU49021 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2020-26979
CWE-451 Medium
No
No
79.0-32 15.12.2020 SB2020121531
SB2020121625
SB2020121563
and 2 more


Showing elements 481 - 500 out of 601