Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mozilla firefox 24.1 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2014-1552
Mozilla Firefox prior to 31.0 and Thunderbird prior to 31.0 do not properly implement the sandbox attribute of the IFRAME element, which allows remote malicious users to bypass intended restrictions on same-origin content via a crafted web site in conjunction with a redirect.
Mozilla Thunderbird 24.6
Mozilla Thunderbird 24.5
Mozilla Thunderbird 24.4
Mozilla Firefox
Mozilla Thunderbird 24.1
Mozilla Thunderbird 24.1.1
Mozilla Thunderbird 24.0
Mozilla Thunderbird 24.0.1
Mozilla Thunderbird
Mozilla Thunderbird 24.2
Mozilla Thunderbird 24.3
NA
CVE-2014-1559
Mozilla Firefox prior to 31.0 and Thunderbird prior to 31.0 allow remote malicious users to cause a denial of service (X.509 certificate parsing outage) via a crafted certificate that does not use UTF-8 character encoding in a required context, a different vulnerability than CVE-...
Mozilla Thunderbird 24.6
Mozilla Thunderbird 24.5
Mozilla Thunderbird 24.0
Mozilla Firefox
Mozilla Thunderbird 24.0.1
Mozilla Thunderbird 24.1
Mozilla Thunderbird 24.1.1
Mozilla Thunderbird 24.2
Mozilla Thunderbird
Mozilla Thunderbird 24.3
Mozilla Thunderbird 24.4
NA
CVE-2014-1560
Mozilla Firefox prior to 31.0 and Thunderbird prior to 31.0 allow remote malicious users to cause a denial of service (X.509 certificate parsing outage) via a crafted certificate that does not use ASCII character encoding in a required context.
Mozilla Thunderbird 24.1.1
Mozilla Thunderbird 24.2
Mozilla Thunderbird
Mozilla Thunderbird 24.6
Mozilla Thunderbird 24.3
Mozilla Thunderbird 24.4
Mozilla Thunderbird 24.5
Mozilla Thunderbird 24.0
Mozilla Firefox
Mozilla Thunderbird 24.0.1
Mozilla Thunderbird 24.1
NA
CVE-2013-5591
Unspecified vulnerability in the browser engine in Mozilla Firefox prior to 25.0, Firefox ESR 24.x prior to 24.1, Thunderbird prior to 24.1, and SeaMonkey prior to 2.22 allows remote malicious users to cause a denial of service (memory corruption and application crash) or possibl...
Mozilla Firefox 19.0
Mozilla Firefox 22.0
Mozilla Firefox
Mozilla Firefox 20.0
Mozilla Firefox 23.0.1
Mozilla Firefox 21.0
Mozilla Firefox 20.0.1
Mozilla Firefox 19.0.2
Mozilla Firefox 19.0.1
Mozilla Firefox 23.0
Mozilla Thunderbird 24.0
Mozilla Thunderbird
Mozilla Thunderbird 17.0.7
Mozilla Thunderbird 17.0.8
Mozilla Thunderbird 17.0.3
Mozilla Thunderbird 17.0.4
Mozilla Thunderbird 17.0
Mozilla Thunderbird 17.0.1
Mozilla Thunderbird 17.0.2
Mozilla Thunderbird Esr 17.0.9
Mozilla Thunderbird 17.0.5
Mozilla Thunderbird 17.0.6
NA
CVE-2013-5590
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox prior to 25.0, Firefox ESR 17.x prior to 17.0.10 and 24.x prior to 24.1, Thunderbird prior to 24.1, Thunderbird ESR 17.x prior to 17.0.10, and SeaMonkey prior to 2.22 allow remote malicious users to cau...
Mozilla Seamonkey 2.14
Mozilla Seamonkey 2.13
Mozilla Seamonkey 2.12
Mozilla Seamonkey 2.11
Mozilla Seamonkey 2.1
Mozilla Seamonkey 2.0.9
Mozilla Seamonkey 2.0.8
Mozilla Seamonkey 2.0.14
Mozilla Seamonkey 2.0.13
Mozilla Seamonkey 2.0
Mozilla Seamonkey 2.20
Mozilla Seamonkey 2.19
Mozilla Seamonkey 2.17.1
Mozilla Seamonkey 2.17
Mozilla Seamonkey 2.16
Mozilla Seamonkey 2.15
Mozilla Seamonkey 2.21
Mozilla Seamonkey 2.10.1
Mozilla Seamonkey 2.0.7
Mozilla Seamonkey 2.0.6
Mozilla Seamonkey 2.0.12
Mozilla Seamonkey 2.0.11
NA
CVE-2013-5598
PDF.js in Mozilla Firefox prior to 25.0 and Firefox ESR 24.x prior to 24.1 does not properly handle the appending of an IFRAME element, which allows remote malicious users to read arbitrary files or execute arbitrary JavaScript code with chrome privileges by using this element wi...
Mozilla Firefox Esr 24.0.1
Mozilla Firefox Esr 24.0.2
Mozilla Firefox Esr 24.0
Mozilla Firefox 21.0
Mozilla Firefox 20.0.1
Mozilla Firefox 19.0.2
Mozilla Firefox 19.0.1
Mozilla Firefox 23.0
Mozilla Firefox 19.0
Mozilla Firefox 22.0
Mozilla Firefox
Mozilla Firefox 20.0
Mozilla Firefox 23.0.1
NA
CVE-2015-0826
The nsTransformedTextRun::SetCapitalization function in Mozilla Firefox prior to 36.0 allows remote malicious users to execute arbitrary code or cause a denial of service (out-of-bounds read of heap memory) via a crafted Cascading Style Sheets (CSS) token sequence that triggers a...
Mozilla Firefox 34.0.5
Mozilla Firefox 33.0
Mozilla Firefox 3.6.7
Mozilla Firefox 3.6.6
Mozilla Firefox 3.6.23
Mozilla Firefox 3.6.22
Mozilla Firefox 3.6.16
Mozilla Firefox 3.6.15
Mozilla Firefox 3.5.9
Mozilla Firefox 3.5.8
Mozilla Firefox 3.5.18
Mozilla Firefox 3.5.17
Mozilla Firefox 3.5.10
Mozilla Firefox 3.5.1
Mozilla Firefox
Mozilla Firefox 3.6.9
Mozilla Firefox 3.6.8
Mozilla Firefox 3.6.26
Mozilla Firefox 3.6.25
Mozilla Firefox 3.6.24
Mozilla Firefox 3.6.18
Mozilla Firefox 3.6.17
NA
CVE-2015-0819
The UITour::onPageEvent function in Mozilla Firefox prior to 36.0 does not ensure that an API call originates from a foreground tab, which allows remote malicious users to conduct spoofing and clickjacking attacks by leveraging access to a UI Tour web site.
Mozilla Firefox 30.0
Mozilla Firefox 3.6.9
Mozilla Firefox 3.6.8
Mozilla Firefox 3.6.26
Mozilla Firefox 3.6.25
Mozilla Firefox 3.6.19
Mozilla Firefox 3.6.18
Mozilla Firefox 3.6.10
Mozilla Firefox 3.6
Mozilla Firefox 3.5.3
Mozilla Firefox 3.5.2
Mozilla Firefox 3.5.13
Mozilla Firefox 3.5.12
Mozilla Firefox 3.0.6
Mozilla Firefox 3.0.5
Mozilla Firefox 3.0.16
Mozilla Firefox 3.0.15
Mozilla Firefox 3.0
Mozilla Firefox 29.0.1
Mozilla Firefox 24.1.1
Mozilla Firefox 24.1
Mozilla Firefox 20.0
NA
CVE-2015-0820
Mozilla Firefox prior to 36.0 does not properly restrict transitions of JavaScript objects from a non-extensible state to an extensible state, which allows remote malicious users to bypass a Caja Compiler sandbox protection mechanism or a Secure EcmaScript sandbox protection mech...
Opensuse Opensuse 13.2
Opensuse Opensuse 13.1
Mozilla Firefox 30.0
Mozilla Firefox 3.6.9
Mozilla Firefox 3.6.27
Mozilla Firefox 3.6.26
Mozilla Firefox 3.6.19
Mozilla Firefox 3.6.18
Mozilla Firefox 3.6.11
Mozilla Firefox 3.6.10
Mozilla Firefox 3.5.4
Mozilla Firefox 3.5.3
Mozilla Firefox 3.5.13
Mozilla Firefox 3.5.12
Mozilla Firefox 3.0.7
Mozilla Firefox 3.0.6
Mozilla Firefox 3.0.17
Mozilla Firefox 3.0.16
Mozilla Firefox 3.0
Mozilla Firefox 29.0.1
Mozilla Firefox 25.0
Mozilla Firefox 24.1.1
NA
CVE-2015-0821
Mozilla Firefox prior to 36.0 allows user-assisted remote malicious users to read arbitrary files or execute arbitrary JavaScript code with chrome privileges via a crafted web site that is accessed with unspecified mouse and keyboard actions.
Mozilla Firefox 32.0
Mozilla Firefox 31.1.0
Mozilla Firefox 3.6.4
Mozilla Firefox 3.6.3
Mozilla Firefox 3.6.21
Mozilla Firefox 3.6.20
Mozilla Firefox 3.6.14
Mozilla Firefox 3.6.13
Mozilla Firefox 3.5.7
Mozilla Firefox 3.5.6
Mozilla Firefox 3.5.16
Mozilla Firefox 3.5.15
Mozilla Firefox 3.5
Mozilla Firefox 3.0.9
Mozilla Firefox 3.0.2
Mozilla Firefox 3.0.19
Mozilla Firefox 3.0.11
Mozilla Firefox 3.0.10
Mozilla Firefox 27.0
Mozilla Firefox 26.0
Mozilla Firefox 23.0
Mozilla Firefox 22.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-5274
CVE-2024-35388
CVE-2024-35396
elevation of privilege
CVE-2021-47544
file upload
CVE-2021-47545
memory leak
CVE-2024-4956
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »