Mozilla Firefox是美国Mozilla基金会的一款开源Web浏览器。 Mozilla Firefox 134版本之前存在安全漏洞,该漏洞源于在某些情况下,将JavaScript模块解析为JSON可能会导致跨区访问,从而导致释放后重用。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Mozilla | Firefox | 128.6 ~ 128.* | - |
|
| Mozilla | Thunderbird | 128.6 ~ 128.* | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-0245 | Lock screen setting bypass in Firefox Focus for Android | |
| CVE-2025-0244 | Address bar spoofing using an invalid protocol scheme on Firefox for Android | |
| CVE-2025-0239 | Alt-Svc ALPN validation failure when redirected | |
| CVE-2025-0246 | Address bar spoofing using an invalid protocol scheme on Firefox for Android | |
| CVE-2025-0237 | WebChannel APIs susceptible to confused deputy attack | |
| CVE-2025-0238 | Use-after-free when breaking lines in text | |
| CVE-2025-0241 | Memory corruption when using JavaScript Text Segmentation | |
| CVE-2025-0243 | Memory safety bugs fixed in Firefox 134, Thunderbird 134, Firefox ESR 128.6, and Thunderbi | |
| CVE-2025-0242 | Memory safety bugs fixed in Firefox 134, Thunderbird 134, Firefox ESR 115.19, Firefox ESR | |
| CVE-2025-0247 | Memory safety bugs fixed in Firefox 134 and Thunderbird 134 |
No comments yet