firefox

Direct Vulnerabilities

Known vulnerabilities in the firefox package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • M
CVE-2025-1942

<136.0+build3-0ubuntu0.20.04.1
  • M
CVE-2025-1938

<136.0+build3-0ubuntu0.20.04.1
  • M
CVE-2025-1943

<136.0+build3-0ubuntu0.20.04.1
  • M
CVE-2025-1935

<136.0+build3-0ubuntu0.20.04.1
  • M
CVE-2025-1931

<136.0+build3-0ubuntu0.20.04.1
  • M
CVE-2025-1932

<136.0+build3-0ubuntu0.20.04.1
  • M
CVE-2025-1933

<136.0+build3-0ubuntu0.20.04.1
  • M
CVE-2025-1936

<136.0+build3-0ubuntu0.20.04.1
  • M
CVE-2025-1414

<136.0+build3-0ubuntu0.20.04.1
  • M
Improper Certificate Validation

<135.0+build2-0ubuntu0.20.04.1
  • M
Use After Free

<135.0+build2-0ubuntu0.20.04.1
  • M
Use After Free

<135.0+build2-0ubuntu0.20.04.1
  • M
Use After Free

<135.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<135.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<135.0+build2-0ubuntu0.20.04.1
  • M
CVE-2025-0240

<134.0+build1-0ubuntu0.20.04.1
  • M
CVE-2025-0241

<134.0+build1-0ubuntu0.20.04.1
  • M
CVE-2025-0238

<134.0+build1-0ubuntu0.20.04.1
  • M
CVE-2025-0242

<134.0+build1-0ubuntu0.20.04.1
  • M
CVE-2024-11695

<133.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-11697

<133.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-11699

<133.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-11701

<133.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-11706

<133.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-11704

<133.0+build2-0ubuntu0.20.04.1
  • M
Race Condition

<132.0+build1-0ubuntu0.20.04.1
  • M
Authentication Bypass

<132.0+build1-0ubuntu0.20.04.1
  • M
Information Exposure

<132.0+build1-0ubuntu0.20.04.1
  • M
CVE-2024-10460

<132.0+build1-0ubuntu0.20.04.1
  • M
Out-of-bounds Read

<132.0+build1-0ubuntu0.20.04.1
  • M
Cross-site Scripting (XSS)

<132.0+build1-0ubuntu0.20.04.1
  • M
Authentication Bypass

<132.0+build1-0ubuntu0.20.04.1
  • H
Use After Free

<131.0.2+build1-0ubuntu0.20.04.1
  • M
Improper Restriction of Rendered UI Layers or Frames

<131.0+build1.1-0ubuntu0.20.04.1
  • M
CVE-2024-9392

<131.0+build1.1-0ubuntu0.20.04.1
  • M
CVE-2024-9398

<131.0+build1.1-0ubuntu0.20.04.1
  • M
CVE-2024-9400

<131.0+build1.1-0ubuntu0.20.04.1
  • M
CVE-2024-9393

<131.0+build1.1-0ubuntu0.20.04.1
  • M
CVE-2024-9396

<131.0+build1.1-0ubuntu0.20.04.1
  • M
CVE-2024-9399

<131.0+build1.1-0ubuntu0.20.04.1
  • M
CVE-2024-9403

<131.0+build1.1-0ubuntu0.20.04.1
  • M
CVE-2024-9394

<131.0+build1.1-0ubuntu0.20.04.1
  • M
CVE-2024-9401

<131.0+build1.1-0ubuntu0.20.04.1
  • M
CVE-2024-8900

<129.0.1+build1-0ubuntu0.20.04.1
  • M
CVE-2024-7652

<128.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-8383

<130.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-8382

<130.0+build2-0ubuntu0.20.04.1
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<130.0+build2-0ubuntu0.20.04.1
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<130.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<130.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<130.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<129.0.1+build1-0ubuntu0.20.04.1
  • M
CVE-2024-7529

<129.0.1+build1-0ubuntu0.20.04.1
  • M
CVE-2024-7523

<129.0.1+build1-0ubuntu0.20.04.1
  • M
Use After Free

<129.0.1+build1-0ubuntu0.20.04.1
  • M
Improper Handling of Exceptional Conditions

<129.0.1+build1-0ubuntu0.20.04.1
  • M
Cross-site Scripting (XSS)

<129.0.1+build1-0ubuntu0.20.04.1
  • M
Use After Free

<129.0.1+build1-0ubuntu0.20.04.1
  • M
CVE-2024-6603

<128.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-6602

<128.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-6609

<128.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-6604

<128.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-6610

<128.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-6614

<128.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-6611

<128.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-6613

<128.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-6608

<128.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-5702

<125.0.2+build1-0ubuntu0.20.04.2
  • M
CVE-2024-5699

<127.0.2+build1-0ubuntu0.20.04.1
  • M
CVE-2024-5688

<127.0.2+build1-0ubuntu0.20.04.1
  • M
CVE-2024-5700

<127.0.2+build1-0ubuntu0.20.04.1
  • M
CVE-2024-5689

<127.0.2+build1-0ubuntu0.20.04.1
  • M
Use After Free

<127.0.2+build1-0ubuntu0.20.04.1
  • M
CVE-2024-5696

<127.0.2+build1-0ubuntu0.20.04.1
  • M
CVE-2024-5697

<127.0.2+build1-0ubuntu0.20.04.1
  • M
CVE-2024-5701

<127.0.2+build1-0ubuntu0.20.04.1
  • M
CVE-2024-4367

<126.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-4774

<126.0+build2-0ubuntu0.20.04.1
  • M
Incomplete Cleanup

<126.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-4769

<126.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-4772

<126.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-4773

<126.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<126.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-4776

<126.0+build2-0ubuntu0.20.04.1
  • M
Allocation of Resources Without Limits or Throttling

<125.0.2+build1-0ubuntu0.20.04.2
  • M
CVE-2024-3859

<125.0.2+build1-0ubuntu0.20.04.2
  • M
CVE-2024-3856

<125.0.2+build1-0ubuntu0.20.04.2
  • M
CVE-2024-3862

<125.0.2+build1-0ubuntu0.20.04.2
  • M
Use After Free

<125.0.2+build1-0ubuntu0.20.04.2
  • M
CVE-2024-3860

<125.0.2+build1-0ubuntu0.20.04.2
  • M
CVE-2024-3864

<125.0.2+build1-0ubuntu0.20.04.2
  • M
CVE-2024-2608

<124.0+build1-0ubuntu0.20.04.1
  • M
CVE-2024-2612

<124.0+build1-0ubuntu0.20.04.1
  • M
Improper Restriction of Rendered UI Layers or Frames

<124.0+build1-0ubuntu0.20.04.1
  • M
CVE-2024-2607

<124.0+build1-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<124.0+build1-0ubuntu0.20.04.1
  • M
CVE-2024-2610

<124.0+build1-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<124.0+build1-0ubuntu0.20.04.1
  • M
CVE-2024-1551

<123.0+build3-0ubuntu0.20.04.1
  • M
CVE-2024-1553

<123.0+build3-0ubuntu0.20.04.1
  • M
Incorrect Conversion between Numeric Types

<123.0+build3-0ubuntu0.20.04.1
  • M
Improper Restriction of Rendered UI Layers or Frames

<123.0+build3-0ubuntu0.20.04.1
  • M
CVE-2024-1549

<123.0+build3-0ubuntu0.20.04.1
  • M
CVE-2024-1548

<123.0+build3-0ubuntu0.20.04.1
  • M
CVE-2024-1546

<123.0+build3-0ubuntu0.20.04.1
  • M
CVE-2024-1547

<123.0+build3-0ubuntu0.20.04.1
  • M
CVE-2024-1557

<123.0+build3-0ubuntu0.20.04.1
  • M
CVE-2024-1556

<123.0+build3-0ubuntu0.20.04.1
  • M
Unchecked Return Value

<122.0+build2-0ubuntu0.20.04.1
  • L
CVE-2024-0754

<122.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-0750

<122.0+build2-0ubuntu0.20.04.1
  • L
Improper Privilege Management

<122.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-0742

<122.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-0748

<122.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<122.0+build2-0ubuntu0.20.04.1
  • M
Out-of-Bounds

<122.0+build2-0ubuntu0.20.04.1
  • M
Origin Validation Error

<122.0+build2-0ubuntu0.20.04.1
  • M
CVE-2024-0755

<122.0+build2-0ubuntu0.20.04.1
  • M
Information Exposure

<121.0+build1-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<121.0+build1-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<121.0+build1-0ubuntu0.20.04.1
  • M
CVE-2023-6860

<121.0+build1-0ubuntu0.20.04.1
  • M
Improper Handling of Exceptional Conditions

<121.0+build1-0ubuntu0.20.04.1
  • M
CVE-2023-6872

<121.0+build1-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<121.0+build1-0ubuntu0.20.04.1
  • M
Improper Restriction of Rendered UI Layers or Frames

<120.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-6210

<120.0+build2-0ubuntu0.20.04.1
  • M
Directory Traversal

<120.0+build2-0ubuntu0.20.04.1
  • M
Use After Free

<120.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Read

<120.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-5725

<119.0+build2-0ubuntu0.20.04.1
  • M
Information Exposure

<119.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-5723

<119.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-5724

<119.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<119.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-5728

<119.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<118.0.1+build1-0ubuntu0.20.04.1
  • M
Memory Leak

<118.0.1+build1-0ubuntu0.20.04.1
  • M
Use After Free

<118.0.1+build1-0ubuntu0.20.04.1
  • M
Use After Free

<117.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<117.0+build2-0ubuntu0.20.04.1
  • M
Use After Free

<117.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-4583

<117.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-4581

<117.0+build2-0ubuntu0.20.04.1
  • M
Allocation of Resources Without Limits or Throttling

<117.0+build2-0ubuntu0.20.04.1
  • M
Missing Encryption of Sensitive Data

<117.0+build2-0ubuntu0.20.04.1
  • M
Use After Free

<117.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-4579

<117.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-4051

<116.0+build2-0ubuntu0.20.04.2
  • M
Origin Validation Error

<116.0+build2-0ubuntu0.20.04.2
  • M
CVE-2023-4046

<116.0+build2-0ubuntu0.20.04.2
  • M
Race Condition

<116.0+build2-0ubuntu0.20.04.2
  • M
Out-of-bounds Read

<116.0+build2-0ubuntu0.20.04.2
  • M
Use After Free

<115.0.2+build1-0ubuntu0.20.04.1
  • M
Missing Authorization

<115.0+build2-0ubuntu0.20.04.3
  • M
Out-of-bounds Write

<115.0+build2-0ubuntu0.20.04.3
  • M
Use After Free

<115.0+build2-0ubuntu0.20.04.3
  • M
CVE-2023-37204

<115.0+build2-0ubuntu0.20.04.3
  • M
CVE-2023-37205

<115.0+build2-0ubuntu0.20.04.3
  • M
Use After Free

<115.0+build2-0ubuntu0.20.04.3
  • M
CVE-2023-37210

<115.0+build2-0ubuntu0.20.04.3
  • M
Improper Certificate Validation

<114.0+build3-0ubuntu0.20.04.1
  • M
Open Redirect

<114.0+build3-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<114.0+build3-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<113.0+build2-0ubuntu0.20.04.1
  • M
Authentication Bypass

<113.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Read

<113.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-32211

<113.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-32212

<113.0+build2-0ubuntu0.20.04.1
  • M
Use of Uninitialized Resource

<113.0+build2-0ubuntu0.20.04.1
  • M
Resource Exhaustion

<112.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-29535

<112.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-29547

<112.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-29548

<112.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-29533

<112.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<112.0+build2-0ubuntu0.20.04.1
  • M
Open Redirect

<112.0+build2-0ubuntu0.20.04.1
  • M
NULL Pointer Dereference

<112.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<111.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-28160

<111.0+build2-0ubuntu0.20.04.1
  • M
Incorrect Type Conversion or Cast

<111.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-25752

<111.0+build2-0ubuntu0.20.04.1
  • M
Exposure of Resource to Wrong Sphere

<111.0+build2-0ubuntu0.20.04.1
  • M
CVE-2023-25728

<110.0+build3-0ubuntu0.20.04.1
  • M
CVE-2023-25731

<110.0+build3-0ubuntu0.20.04.1
  • M
CVE-2023-25729

<110.0+build3-0ubuntu0.20.04.1
  • M
CVE-2023-25730

<110.0+build3-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<110.0+build3-0ubuntu0.20.04.1
  • M
Use After Free

<110.0+build3-0ubuntu0.20.04.1
  • M
CVE-2023-25737

<110.0+build3-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<109.0+build2-0ubuntu0.20.04.1
  • M
Improper Encoding or Escaping of Output

<109.0+build2-0ubuntu0.20.04.1
  • M
Origin Validation Error

<109.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-46872

<108.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-46877

<108.0+build2-0ubuntu0.20.04.1
  • M
Arbitrary Code Injection

<108.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-46871

<108.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-46874

<108.0+build2-0ubuntu0.20.04.1
  • L
NULL Pointer Dereference

*
  • M
Race Condition

<106.0.2+build1-0ubuntu0.20.04.1
  • M
NULL Pointer Dereference

<106.0.2+build1-0ubuntu0.20.04.1
  • L
Cleartext Storage of Sensitive Information

<106.0.2+build1-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<106.0.2+build1-0ubuntu0.20.04.1
  • M
Insecure Storage of Sensitive Information

<105.0+build2-0ubuntu0.20.04.1
  • M
Arbitrary Code Injection

<105.0+build2-0ubuntu0.20.04.1
  • L
Cross-site Scripting (XSS)

<105.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-40957

<105.0+build2-0ubuntu0.20.04.1
  • M
Use After Free

<105.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Read

<105.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<104.0+build3-0ubuntu0.20.04.1
  • M
Improper Preservation of Permissions

<104.0+build3-0ubuntu0.20.04.1
  • M
Origin Validation Error

<104.0+build3-0ubuntu0.20.04.1
  • M
Incorrect Authorization

<104.0+build3-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<103.0+build1-0ubuntu0.20.04.1
  • M
Race Condition

<103.0+build1-0ubuntu0.20.04.1
  • M
Open Redirect

<103.0+build1-0ubuntu0.20.04.1
  • M
CVE-2022-34471

<102.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-34468

<102.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<102.0+build2-0ubuntu0.20.04.1
  • M
Access of Uninitialized Pointer

<102.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-34479

<102.0+build2-0ubuntu0.20.04.1
  • M
Integer Overflow or Wraparound

<102.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-34482

<102.0+build2-0ubuntu0.20.04.1
  • M
Cross-site Scripting (XSS)

<102.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-34477

<102.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-31742

<101.0.1+build1-0ubuntu0.20.04.1
  • M
Cross-site Scripting (XSS)

<101.0.1+build1-0ubuntu0.20.04.1
  • M
Authentication Bypass

<101.0.1+build1-0ubuntu0.20.04.1
  • M
Improper Validation of Array Index

<101.0.1+build1-0ubuntu0.20.04.1
  • M
Out-of-bounds Read

<101.0.1+build1-0ubuntu0.20.04.1
  • M
CVE-2022-31748

<101.0.1+build1-0ubuntu0.20.04.1
  • M
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

<100.0.2+build1-0ubuntu0.20.04.1
  • M
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

<100.0.2+build1-0ubuntu0.20.04.1
  • L
CVE-2022-29915

<100.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-29914

<100.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-29916

<100.0+build2-0ubuntu0.20.04.1
  • M
Incorrect Default Permissions

<100.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<100.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-28283

<99.0+build2-0ubuntu0.20.04.2
  • M
Out-of-bounds Write

<99.0+build2-0ubuntu0.20.04.2
  • M
Out-of-bounds Write

<99.0+build2-0ubuntu0.20.04.2
  • M
CVE-2022-28287

<99.0+build2-0ubuntu0.20.04.2
  • L
Improper Restriction of Rendered UI Layers or Frames

<99.0+build2-0ubuntu0.20.04.2
  • M
CVE-2022-28284

<99.0+build2-0ubuntu0.20.04.2
  • M
Use After Free

<99.0+build2-0ubuntu0.20.04.2
  • M
Out-of-bounds Write

<99.0+build2-0ubuntu0.20.04.2
  • M
Use After Free

<99.0+build2-0ubuntu0.20.04.2
  • M
Inefficient Regular Expression Complexity

<99.0+build2-0ubuntu0.20.04.2
  • M
Out-of-bounds Write

<98.0+build3-0ubuntu0.20.04.2
  • M
Use After Free

<98.0+build3-0ubuntu0.20.04.2
  • M
Information Exposure

<98.0+build3-0ubuntu0.20.04.2
  • M
CVE-2022-26383

<98.0+build3-0ubuntu0.20.04.2
  • M
CVE-2022-26384

<98.0+build3-0ubuntu0.20.04.2
  • M
Time-of-check Time-of-use (TOCTOU)

<98.0+build3-0ubuntu0.20.04.2
  • H
Use After Free

<97.0.2+build1-0ubuntu0.20.04.1
  • H
Use After Free

<97.0.2+build1-0ubuntu0.20.04.1
  • L
Exposure of Resource to Wrong Sphere

*
  • M
CVE-2022-22756

<97.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<97.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-22761

<97.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<97.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Read

<96.0+build2-0ubuntu0.20.04.1
  • M
Race Condition

<96.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-22745

<96.0+build2-0ubuntu0.20.04.1
  • M
Use After Free

<96.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<96.0+build2-0ubuntu0.20.04.1
  • M
CVE-2022-22741

<96.0+build2-0ubuntu0.20.04.1
  • L
Improper Certificate Validation

<96.0+build2-0ubuntu0.20.04.1
  • M
Integer Overflow or Wraparound

<98.0+build3-0ubuntu0.20.04.2
  • M
XML Injection

<96.0+build2-0ubuntu0.20.04.1
  • M
Integer Overflow or Wraparound

<98.0+build3-0ubuntu0.20.04.2
  • L
Incorrect Calculation

<98.0+build3-0ubuntu0.20.04.2
  • M
Excessive Iteration

<95.0+build1-0ubuntu0.20.04.1
  • M
Improper Restriction of Rendered UI Layers or Frames

<95.0+build1-0ubuntu0.20.04.1
  • M
CVE-2021-43541

<95.0+build1-0ubuntu0.20.04.1
  • M
Information Exposure

<95.0+build1-0ubuntu0.20.04.1
  • M
Use After Free

<95.0+build1-0ubuntu0.20.04.1
  • M
Incorrect Type Conversion or Cast

<95.0+build1-0ubuntu0.20.04.1
  • M
Information Exposure

<95.0+build1-0ubuntu0.20.04.1
  • M
Cross-site Scripting (XSS)

<95.0+build1-0ubuntu0.20.04.1
  • M
Origin Validation Error

<94.0+build3-0ubuntu0.20.04.1
  • M
Use After Free

<94.0+build3-0ubuntu0.20.04.1
  • M
Improper Restriction of Rendered UI Layers or Frames

<94.0+build3-0ubuntu0.20.04.1
  • M
Incorrect Authorization

<94.0+build3-0ubuntu0.20.04.1
  • M
CVE-2021-38500

<93.0+build1-0ubuntu0.20.04.1
  • M
Origin Validation Error

<93.0+build1-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<92.0+build3-0ubuntu0.20.04.1
  • M
HTTP Request Smuggling

<91.0.1+build1-0ubuntu0.20.04.1
  • M
Improper Restriction of Excessive Authentication Attempts

<91.0+build2-0ubuntu0.20.04.1
  • M
Interpretation Conflict

<91.0+build2-0ubuntu0.20.04.1
  • L
Missing Release of Resource after Effective Lifetime

<91.0+build2-0ubuntu0.20.04.1
  • M
Missing Initialization of Resource

<91.0+build2-0ubuntu0.20.04.1
  • M
Race Condition

<91.0+build2-0ubuntu0.20.04.1
  • M
Use After Free

<90.0+build1-0ubuntu0.20.04.1
  • M
Use After Free

<90.0+build1-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<90.0+build1-0ubuntu0.20.04.1
  • M
CVE-2021-29974

<90.0+build1-0ubuntu0.20.04.1
  • M
Arbitrary Code Injection

<87.0+build3-0ubuntu0.20.04.1
  • M
Incorrect Authorization

<89.0+build2-0ubuntu0.20.04.2
  • M
Incorrect Resource Transfer Between Spheres

<89.0+build2-0ubuntu0.20.04.2
  • M
Missing Authorization

<89.0+build2-0ubuntu0.20.04.2
  • M
Out-of-Bounds

<89.0+build2-0ubuntu0.20.04.2
  • M
Out-of-Bounds

<88.0+build2-0ubuntu0.20.04.1
  • M
Incorrect Calculation

<88.0+build2-0ubuntu0.20.04.1
  • M
Missing Initialization of Resource

<88.0+build2-0ubuntu0.20.04.1
  • M
Operation on a Resource after Expiration or Release

<88.0+build2-0ubuntu0.20.04.1
  • M
Incorrect Conversion between Numeric Types

<88.0+build2-0ubuntu0.20.04.1
  • M
Insufficient Verification of Data Authenticity

<88.0+build2-0ubuntu0.20.04.1
  • M
CVE-2021-24000

<88.0+build2-0ubuntu0.20.04.1
  • M
Exposure of Resource to Wrong Sphere

<88.0+build2-0ubuntu0.20.04.1
  • M
Arbitrary Argument Injection

<88.0+build2-0ubuntu0.20.04.1
  • M
CVE-2021-23996

<88.0+build2-0ubuntu0.20.04.1
  • M
Authentication Bypass

<87.0+build3-0ubuntu0.20.04.2
  • M
Out-of-Bounds

<87.0+build3-0ubuntu0.20.04.2
  • M
Out-of-Bounds

<87.0+build3-0ubuntu0.20.04.2
  • M
Out-of-Bounds

<87.0+build3-0ubuntu0.20.04.2
  • M
Out-of-Bounds

<87.0+build3-0ubuntu0.20.04.2
  • M
Inadequate Encryption Strength

<87.0+build3-0ubuntu0.20.04.2
  • L
Information Exposure

<86.0+build3-0ubuntu0.20.04.1
  • L
Missing Authorization

<86.0+build3-0ubuntu0.20.04.1
  • L
CVE-2021-23972

<86.0+build3-0ubuntu0.20.04.1
  • M
CVE-2021-23978

<86.0+build3-0ubuntu0.20.04.1
  • M
Out-of-Bounds

<86.0+build3-0ubuntu0.20.04.1
  • M
Reachable Assertion

<86.0+build3-0ubuntu0.20.04.1
  • M
CVE-2021-23971

<86.0+build3-0ubuntu0.20.04.1
  • M
CVE-2021-23953

<85.0+build1-0ubuntu0.20.04.1
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<85.0+build1-0ubuntu0.20.04.1
  • M
CVE-2021-23956

<85.0+build1-0ubuntu0.20.04.1
  • M
CVE-2021-23960

<85.0+build1-0ubuntu0.20.04.1
  • M
Out-of-Bounds

<85.0+build1-0ubuntu0.20.04.1
  • M
Out-of-Bounds

<85.0+build1-0ubuntu0.20.04.1
  • M
Use After Free

<84.0.2+build1-0ubuntu0.20.04.1
  • M
CVE-2020-26973

<84.0+build3-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<84.0+build3-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<84.0+build3-0ubuntu0.20.04.1
  • L
CVE-2020-35111

<84.0+build3-0ubuntu0.20.04.1
  • L
Open Redirect

<84.0+build3-0ubuntu0.20.04.1
  • M
CVE-2020-26976

<84.0+build3-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<84.0+build3-0ubuntu0.20.04.1
  • M
Information Exposure

<84.0+build3-0ubuntu0.20.04.1
  • M
CVE-2020-16012

<83.0+build2-0ubuntu0.20.04.1
  • M
Cross-site Scripting (XSS)

<83.0+build2-0ubuntu0.20.04.1
  • M
Use After Free

<83.0+build2-0ubuntu0.20.04.1
  • M
Use After Free

<83.0+build2-0ubuntu0.20.04.1
  • M
Improper Restriction of Rendered UI Layers or Frames

<83.0+build2-0ubuntu0.20.04.1
  • L
CVE-2020-26967

<83.0+build2-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<83.0+build2-0ubuntu0.20.04.1
  • H
Use After Free

<82.0.3+build1-0ubuntu0.20.04.1
  • M
CVE-2020-15680

<82.0+build2-0ubuntu0.20.04.1
  • M
Out-of-Bounds

<82.0+build2-0ubuntu0.20.04.1
  • M
CVE-2020-15683

<82.0+build2-0ubuntu0.20.04.1
  • M
CVE-2020-15681

<82.0+build2-0ubuntu0.20.04.1
  • M
Use After Free

<82.0+build2-0ubuntu0.20.04.1
  • M
Cross-site Scripting (XSS)

<81.0+build2-0ubuntu0.20.04.1
  • M
Open Redirect

<81.0+build2-0ubuntu0.20.04.1
  • M
Release of Invalid Pointer or Reference

<81.0+build2-0ubuntu0.20.04.1
  • M
Buffer Overflow

<81.0+build2-0ubuntu0.20.04.1
  • L
Information Exposure

<80.0+build2-0ubuntu0.20.04.1
  • M
CVE-2020-15665

<80.0+build2-0ubuntu0.20.04.1
  • M
Incorrect Authorization

<80.0+build2-0ubuntu0.20.04.1
  • L
Improper Locking

<80.0+build2-0ubuntu0.20.04.1
  • M
Improper Restriction of Rendered UI Layers or Frames

<79.0+build1-0ubuntu0.20.04.1
  • M
Information Exposure

<80.0+build2-0ubuntu0.20.04.1
  • M
CVE-2020-6829

<80.0+build2-0ubuntu0.20.04.1
  • M
Use of a Broken or Risky Cryptographic Algorithm

<80.0+build2-0ubuntu0.20.04.1
  • M
CVE-2020-15653

<79.0+build1-0ubuntu0.20.04.1
  • M
Origin Validation Error

<79.0+build1-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<79.0+build1-0ubuntu0.20.04.1
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<79.0+build1-0ubuntu0.20.04.1
  • M
CVE-2020-6514

<79.0+build1-0ubuntu0.20.04.1
  • M
CVE-2020-12412

<70.0+build2-0ubuntu1
  • M
Use After Free

<78.0.1+build1-0ubuntu0.20.04.1
  • M
Incorrect Default Permissions

<78.0.1+build1-0ubuntu0.20.04.1
  • M
Incorrect Default Permissions

<78.0.1+build1-0ubuntu0.20.04.1
  • M
Out-of-Bounds

<78.0.1+build1-0ubuntu0.20.04.1
  • M
Out-of-bounds Write

<78.0.1+build1-0ubuntu0.20.04.1
  • M
Out-of-bounds Read

<78.0.1+build1-0ubuntu0.20.04.1
  • M
Out-of-Bounds

<77.0.1+build1-0ubuntu0.20.04.1
  • M
Information Exposure

<77.0.1+build1-0ubuntu0.20.04.1
  • L
CVE-2020-12409

<77.0.1+build1-0ubuntu0.20.04.1
  • M
Out-of-Bounds

<77.0.1+build1-0ubuntu0.20.04.1
  • M
Insufficient Verification of Data Authenticity

<77.0.1+build1-0ubuntu0.20.04.1
  • M
Use After Free

<77.0.1+build1-0ubuntu0.20.04.1
  • M
Information Exposure

<77.0.1+build1-0ubuntu0.20.04.1
  • M
Improper Input Validation

<76.0+build2-0ubuntu0.20.04.1
  • M
Out-of-Bounds

<76.0+build2-0ubuntu0.20.04.1
  • M
Race Condition

<76.0+build2-0ubuntu0.20.04.1
  • M
Buffer Overflow

<76.0+build2-0ubuntu0.20.04.1
  • M
Improper Privilege Management

<75.0+build3-0ubuntu1
  • M
Session Fixation

<75.0+build3-0ubuntu1
  • M
Out-of-Bounds

<75.0+build3-0ubuntu1
  • M
Out-of-Bounds

<75.0+build3-0ubuntu1
  • M
Out-of-bounds Write

<75.0+build3-0ubuntu1
  • M
Authentication Bypass

<74.0+build3-0ubuntu1
  • L
Information Exposure

<74.0+build3-0ubuntu1
  • M
Use After Free

<74.0+build3-0ubuntu1
  • M
Arbitrary Code Injection

<74.0+build3-0ubuntu1
  • M
Authentication Bypass

<74.0+build3-0ubuntu1
  • M
Out-of-Bounds

<74.0+build3-0ubuntu1
  • M
Cross-site Scripting (XSS)

<73.0+build3-0ubuntu1
  • M
Out-of-bounds Write

<73.0+build3-0ubuntu1
  • M
Improper Input Validation

<72.0.1+build1-0ubuntu1
  • M
Buffer Overflow

<72.0.1+build1-0ubuntu1
  • M
Out-of-bounds Write

<72.0.1+build1-0ubuntu1
  • M
Cross-site Scripting (XSS)

<72.0.1+build1-0ubuntu1
  • M
Use After Free

<71.0+build5-0ubuntu1
  • M
Use After Free

<71.0+build5-0ubuntu1
  • M
Use After Free

<71.0+build5-0ubuntu1
  • M
Inclusion of Functionality from Untrusted Control Sphere

<71.0+build5-0ubuntu1
  • M
Buffer Overflow

<71.0+build5-0ubuntu1
  • M
Use After Free

<71.0+build5-0ubuntu1
  • M
Buffer Overflow

<71.0+build5-0ubuntu1
  • M
Incorrect Default Permissions

<70.0+build2-0ubuntu1
  • M
Cross-site Scripting (XSS)

<70.0+build2-0ubuntu1
  • M
Origin Validation Error

<70.0+build2-0ubuntu1
  • L
Improper Input Validation

<70.0+build2-0ubuntu1
  • M
Cross-site Scripting (XSS)

<70.0+build2-0ubuntu1
  • M
Use After Free

<70.0+build2-0ubuntu1
  • M
Out-of-bounds Write

<70.0+build2-0ubuntu1
  • M
Use After Free

<70.0+build2-0ubuntu1
  • M
CVE-2019-11754

<69.0.1+build1-0ubuntu2
  • M
Out-of-bounds Read

<70.0+build2-0ubuntu1
  • L
Insufficient Verification of Data Authenticity

<69.0.1+build1-0ubuntu2
  • M
Buffer Overflow

<69.0.1+build1-0ubuntu2
  • M
Cross-site Scripting (XSS)

<69.0.1+build1-0ubuntu2
  • M
Information Exposure

<69.0.1+build1-0ubuntu2
  • M
Out-of-Bounds

<69.0.1+build1-0ubuntu2
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<69.0.1+build1-0ubuntu2
  • M
Use After Free

<69.0.1+build1-0ubuntu2
  • M
Use After Free

<69.0.1+build1-0ubuntu2
  • L
Incorrect Default Permissions

<69.0.1+build1-0ubuntu2
  • M
Improper Preservation of Permissions

<69.0.1+build1-0ubuntu2
  • M
CVE-2019-11749

<69.0.1+build1-0ubuntu2
  • M
Cross-site Scripting (XSS)

<69.0.1+build1-0ubuntu2
  • M
Incorrect Authorization

<68.0+build3-0ubuntu1
  • M
CVE-2019-11725

<68.0+build3-0ubuntu1
  • M
Out-of-Bounds

<68.0+build3-0ubuntu1
  • M
Use After Free

<68.0+build3-0ubuntu1
  • M
CVE-2019-11721

<68.0+build3-0ubuntu1
  • M
Arbitrary Code Injection

<68.0+build3-0ubuntu1
  • M
Improper Certificate Validation

<68.0+build3-0ubuntu1
  • M
Cross-site Request Forgery (CSRF)

<68.0+build3-0ubuntu1
  • M
Cross-site Scripting (XSS)

<68.0+build3-0ubuntu1
  • M
CVE-2019-11730

<68.0+build3-0ubuntu1
  • M
Origin Validation Error

<68.0+build3-0ubuntu1
  • M
Exposure of Resource to Wrong Sphere

<68.0+build3-0ubuntu1
  • M
Improper Input Validation

<68.0+build3-0ubuntu1
  • M
Out-of-Bounds

<68.0+build3-0ubuntu1
  • M
Out-of-Bounds

<68.0+build3-0ubuntu1
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<67.0.3+build1-0ubuntu1
  • L
Cross-site Scripting (XSS)

<67.0+build2-0ubuntu1
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<67.0+build2-0ubuntu1
  • M
Origin Validation Error

<67.0+build2-0ubuntu1
  • M
Use After Free

<67.0+build2-0ubuntu1
  • M
Out-of-Bounds

<67.0+build2-0ubuntu1
  • M
Use After Free

<67.0+build2-0ubuntu1
  • M
Improper Input Validation

<67.0+build2-0ubuntu1
  • M
Out-of-Bounds

<67.0+build2-0ubuntu1
  • M
Use After Free

<67.0+build2-0ubuntu1
  • M
Out-of-Bounds

<67.0+build2-0ubuntu1
  • L
CVE-2019-11699

<67.0+build2-0ubuntu1
  • M
Improper Input Validation

<67.0+build2-0ubuntu1
  • M
Use After Free

<67.0+build2-0ubuntu1
  • M
CVE-2019-11695

<67.0+build2-0ubuntu1
  • M
Improper Input Validation

<67.0+build2-0ubuntu1
  • M
Out-of-Bounds

<66.0.1+build1-0ubuntu1
  • M
Use of Uninitialized Resource

<66.0+build3-0ubuntu1
  • M
Origin Validation Error

<66.0+build3-0ubuntu1
  • M
Reachable Assertion

<66.0+build3-0ubuntu1
  • M
Out-of-Bounds

<66.0+build3-0ubuntu1
  • M
Use After Free

<66.0+build3-0ubuntu1
  • M
Origin Validation Error

<66.0+build3-0ubuntu1
  • M
Origin Validation Error

<62.0+build2-0ubuntu1
  • M
Out-of-bounds Write

<65.0.1+build2-0ubuntu1
  • M
Out-of-Bounds

<65.0+build2-0ubuntu1
  • M
Use After Free

<65.0+build2-0ubuntu1
  • M
CVE-2018-18506

<65.0+build2-0ubuntu1
  • M
Out-of-bounds Read

<65.0+build2-0ubuntu1
  • M
Out-of-Bounds

<65.0+build2-0ubuntu1
  • M
Out-of-Bounds

<64.0+build3-0ubuntu1
  • M
Out-of-Bounds

<64.0+build3-0ubuntu1
  • L
Improper Input Validation

<63.0+build1-0ubuntu1
  • M
Out-of-Bounds

<63.0+build1-0ubuntu1
  • M
CVE-2018-12398

<63.0+build1-0ubuntu1
  • L
Origin Validation Error

<63.0+build1-0ubuntu1
  • M
CVE-2018-12395

<63.0+build1-0ubuntu1
  • M
Incorrect Permission Assignment for Critical Resource

<63.0+build1-0ubuntu1
  • M
Information Exposure

<63.0+build1-0ubuntu1
  • M
Out-of-Bounds

<63.0+build1-0ubuntu1
  • M
Out-of-bounds Write

<63.0+build1-0ubuntu1
  • M
CVE-2018-12392

<63.0+build1-0ubuntu1
  • M
Out-of-Bounds

<62.0+build2-0ubuntu1
  • M
Out-of-Bounds

<61.0.1+build1-0ubuntu0.18.04.1
  • M
Out-of-Bounds

<61.0.1+build1-0ubuntu0.18.04.1
  • M
Origin Validation Error

<55.0.2+build1-0ubuntu4
  • M
Arbitrary Code Injection

<55.0.2+build1-0ubuntu4
  • M
Arbitrary Code Injection

<55.0.2+build1-0ubuntu4
  • M
CVE-2017-7781

<55.0.2+build1-0ubuntu4
  • M
Out-of-Bounds

<54.0+build3-0ubuntu1
  • M
Out-of-Bounds

<59.0.1+build1-0ubuntu1
  • M
Improper Input Validation

<55.0.2+build1-0ubuntu4
  • M
Out-of-Bounds

<60.0+build2-0ubuntu1
  • M
Out-of-Bounds

<59.0.1+build1-0ubuntu1
  • M
Cross-site Scripting (XSS)

<55.0.2+build1-0ubuntu4
  • M
Out-of-Bounds

<57.0.1+build2-0ubuntu1
  • M
Out-of-Bounds

<59.0.1+build1-0ubuntu1
  • M
Out-of-Bounds

<55.0.2+build1-0ubuntu4
  • M
Use After Free

<55.0.2+build1-0ubuntu4
  • M
Information Exposure

<57.0.1+build2-0ubuntu1