NA - CVE-2025-1012 - A race during concurrent delazification could...
A race during concurrent delazification could have led to a use-after-free. This vulnerability affects Firefox < 135, Firefox ESR < 115.20, Firefox ESR < 128.7, Thunderbird < 128.7, and Thunderbird...
NA - CVE-2025-1013 - A race condition could have led to private...
A race condition could have led to private browsing tabs being opened in normal browsing windows. This could have resulted in a potential privacy leak. This vulnerability affects Firefox < 135,...
NA - CVE-2025-1014 - Certificate length was not properly checked...
Certificate length was not properly checked when added to a certificate store. In practice only trusted data was processed. This vulnerability affects Firefox < 135, Firefox ESR < 128.7,...
NA - CVE-2025-1015 - The Thunderbird Address Book URI fields...
The Thunderbird Address Book URI fields contained unsanitized links. This could be used by an attacker to create and export an address book containing a malicious payload in a field. For example,...
NA - CVE-2025-1016 - Memory safety bugs present in Firefox 134,...
Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 115.19, Firefox ESR 128.6, Thunderbird 115.19, and Thunderbird 128.6. Some of these bugs showed evidence of memory corruption...
NA - CVE-2025-1017 - Memory safety bugs present in Firefox 134,...
Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 128.6, and Thunderbird 128.6. Some of these bugs showed evidence of memory corruption and we presume that with enough effort...
NA - CVE-2025-1018 - The fullscreen notification is prematurely...
The fullscreen notification is prematurely hidden when fullscreen is re-requested quickly by the user. This could have been leveraged to perform a potential spoofing attack. This vulnerability...
NA - CVE-2025-1019 - The z-order of the browser windows could be...
The z-order of the browser windows could be manipulated to hide the fullscreen notification. This could potentially be leveraged to perform a spoofing attack. This vulnerability affects Firefox
NA - CVE-2025-1020 - Memory safety bugs present in Firefox 134 and...
Memory safety bugs present in Firefox 134 and Thunderbird 134. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited...
NA - CVE-2024-23690 - The end-of-life Netgear FVS336Gv2 and FVS336Gv3...
The end-of-life Netgear FVS336Gv2 and FVS336Gv3 are affected by a command injection vulnerability in the Telnet interface. An authenticated and remote attacker can execute arbitrary OS commands as...