Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Vulnerability List
Found 1767 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2025-8039 Search terms persisted in URL bar MozillaFirefox 高危 -2025-07-22 20:49:27 Deep Dive
CVE-2025-8038 CSP frame-src was not correctly enforced for paths MozillaFirefox 超危 -2025-07-22 20:49:27 Deep Dive
CVE-2025-8033 Incorrect JavaScript state machine for generators MozillaFirefox 中危 -2025-07-22 20:49:27 Deep Dive
CVE-2025-8032 XSLT documents could bypass CSP MozillaFirefox 高危 -2025-07-22 20:49:27 Deep Dive
CVE-2025-8037 Nameless cookies shadow secure cookies MozillaFirefox 超危 -2025-07-22 20:49:26 Deep Dive
CVE-2025-8031 Incorrect URL stripping in CSP reports MozillaFirefox 超危 -2025-07-22 20:49:26 Deep Dive
CVE-2025-8030 Potential user-assisted code execution in “Copy as cURL” command MozillaFirefox 高危 -2025-07-22 20:49:26 Deep Dive
CVE-2025-8036 DNS rebinding circumvents CORS MozillaFirefox 高危 -2025-07-22 20:49:25 Deep Dive
CVE-2025-8029 javascript: URLs executed on object and embed tags MozillaFirefox 高危 -2025-07-22 20:49:25 Deep Dive
CVE-2025-8028 Large branch table could lead to truncated instruction MozillaFirefox 超危 -2025-07-22 20:49:25 Deep Dive
CVE-2025-8027 JavaScript engine only wrote partial return value to stack MozillaFirefox 中危 -2025-07-22 20:49:24 Deep Dive
CVE-2025-6703 transport/fc.rs: panic attempting to send MAX_DATA with value larger max varint Mozillaneqo 低危 -2025-06-26 09:30:04 Deep Dive
CVE-2025-6436 Memory safety bugs fixed in Firefox 140 and Thunderbird 140 MozillaFirefox--2025-06-24 12:28:05 Deep Dive
CVE-2025-6435 Save as in Devtools could download files without sanitizing the extension MozillaFirefox--2025-06-24 12:28:05 Deep Dive
CVE-2025-6434 HTTPS-Only exception screen lacked anti-clickjacking delay MozillaFirefox--2025-06-24 12:28:04 Deep Dive
CVE-2025-6433 WebAuthn would allow a user to sign a challenge on a webpage with an invalid TLS certificate MozillaFirefox--2025-06-24 12:28:04 Deep Dive
CVE-2025-6432 DNS Requests leaked outside of a configured SOCKS proxy MozillaFirefox--2025-06-24 12:28:04 Deep Dive
CVE-2025-6431 The prompt in Firefox for Android that asks before opening a link in an external application could be bypassed MozillaFirefox--2025-06-24 12:28:03 Deep Dive
CVE-2025-6428 Firefox for Android opened URLs specified in a link querystring parameter MozillaFirefox--2025-06-24 12:28:02 Deep Dive
CVE-2025-6426 No warning when opening executable terminal files on macOS MozillaFirefox 中危 -2025-06-24 12:28:01 Deep Dive