Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

mozilla — Vulnerabilities & Security Advisories 1773

Browse all 1773 CVE security advisories affecting mozilla. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Mozilla operates as a non-profit organization primarily known for developing the Firefox web browser and maintaining the Gecko rendering engine. Its software portfolio serves millions of users globally, focusing on open-source web technologies and privacy-centric browsing solutions. Historically, the codebase has been susceptible to a wide array of vulnerabilities, including remote code execution, cross-site scripting, and memory corruption issues such as buffer overflows. These flaws often stem from complex JavaScript engines and network stack implementations. While Mozilla maintains a robust security response team and regularly issues patches, the sheer volume of recorded Common Vulnerabilities and Exposures highlights the challenges inherent in maintaining large-scale, cross-platform applications. The organization continues to prioritize security audits and community-driven bug bounty programs to mitigate risks associated with its extensive feature set and widespread adoption.

Found 1241 results / 1773Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2023-23605 Memory safety bugs fixed in Firefox 109 and Firefox ESR 102.7 — Firefox 8.8 -2023-06-02
CVE-2023-23604 Creation of duplicate SystemPrincipal from less secure contexts — Firefox 4.3 -2023-06-02
CVE-2023-23603 Calls to console.log allowed bypassing Content Security Policy via format directive — Firefox 6.5 -2023-06-02
CVE-2023-23602 Content Security Policy wasn't being correctly applied to WebSockets in WebWorkers — Firefox 8.1 -2023-06-02
CVE-2023-23601 URL being dragged from cross-origin iframe into same tab triggers navigation — Firefox 4.3 -2023-06-02
CVE-2023-23600 Notification permissions persisted between Normal and Private Browsing on Android — Firefox 4.3 -2023-06-02
CVE-2023-23599 Malicious command could be hidden in devtools output on Windows — Firefox 8.8 -2023-06-02
CVE-2023-23598 Arbitrary file read from GTK drag and drop on Linux — Firefox 6.5 -2023-06-02
CVE-2023-23597 Logic bug in process allocation allowed to read arbitrary files — Firefox 6.5 -2023-06-02
CVE-2023-0767 Mozilla Firefox 安全漏洞 — Firefox 8.8 -2023-06-02
CVE-2020-12413 Mozilla Firefox 信息泄露漏洞 — Firefox 5.9 -2023-02-16
CVE-2021-4128 Mozilla Firefox 资源管理错误漏洞 — Firefox 6.5 -2022-12-22
CVE-2021-4129 Mozilla Thunderbird 缓冲区错误漏洞 — Firefox 8.8 -2022-12-22
CVE-2021-4221 Mozilla Firefox 安全漏洞 — Firefox 6.5 -2022-12-22
CVE-2022-0511 Mozilla Firefox 缓冲区错误漏洞 — Firefox 8.8 -2022-12-22
CVE-2022-0843 Mozilla Firefox 缓冲区错误漏洞 — Firefox 8.8 -2022-12-22
CVE-2022-2200 Mozilla Firefox 代码注入漏洞 — Firefox 8.8 -2022-12-22
CVE-2022-22736 Mozilla Firefox 代码问题漏洞 — Firefox 7.0 -2022-12-22
CVE-2022-22749 Mozilla Firefox 安全漏洞 — Firefox 4.3 -2022-12-22
CVE-2022-22750 Mozilla Firefox 安全漏洞 — Firefox 6.5 -2022-12-22
CVE-2022-22752 Mozilla Firefox 缓冲区错误漏洞 — Firefox 8.8 -2022-12-22
CVE-2022-22753 Mozilla Firefox 安全漏洞 — Firefox 7.1 -2022-12-22
CVE-2022-22754 Mozilla Firefox 权限许可和访问控制问题漏洞 — Firefox 6.5 -2022-12-22
CVE-2022-22755 Mozilla Firefox 安全漏洞 — Firefox 8.3 -2022-12-22
CVE-2022-22756 Mozilla Firefox 安全漏洞 — Firefox 8.8 -2022-12-22
CVE-2022-22757 Mozilla Firefox 访问控制错误漏洞 — Firefox 6.5 -2022-12-22
CVE-2022-22758 Mozilla Firefox 安全漏洞 — Firefox 8.8 -2022-12-22
CVE-2022-22759 Mozilla Firefox 权限许可和访问控制问题漏洞 — Firefox 9.3 -2022-12-22
CVE-2022-22760 Mozilla Firefox 信息泄露漏洞 — Firefox 4.3 -2022-12-22
CVE-2022-22761 Mozilla Firefox 安全特征问题漏洞 — Firefox 8.8 -2022-12-22

This page lists every published CVE security advisory associated with mozilla. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.