Mozilla / Focus
16 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-11799 | UXSS in Focus for iOS / Klar Webkit navigation | HIGH | 7.5 | Jun 9, 2026 |
| CVE-2023-29551 | Memory safety bugs present in Firefox 111. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could h… | HIGH | 8.8 | Jun 2, 2023 |
| CVE-2023-29550 | Mozilla: Memory safety bugs fixed in Firefox 112 and Firefox ESR 102.10 | HIGH | 8.8 | Jun 2, 2023 |
| CVE-2023-29549 | Under certain circumstances, a call to the <code>bind</code> function may have resulted in the incorrect realm. This may have created a vulnerability relating… | MEDIUM | 6.5 | Jun 2, 2023 |
| CVE-2023-29548 | Mozilla: Incorrect optimization result on ARM64 | MEDIUM | 6.5 | Jun 2, 2023 |
| CVE-2023-29547 | When a secure cookie existed in the Firefox cookie jar an insecure cookie for the same domain could have been created, when it should have silently failed. Thi… | MEDIUM | 6.5 | Jun 2, 2023 |
| CVE-2023-29544 | If multiple instances of resource exhaustion occurred at the incorrect time, the garbage collector could have caused memory corruption and a potentially exploi… | MEDIUM | 6.5 | Jun 2, 2023 |
| CVE-2023-29543 | An attacker could have caused memory corruption and a potentially exploitable use-after-free of a pointer in a global object's debugger vector. This vulnerabil… | HIGH | 8.8 | Jun 2, 2023 |
| CVE-2023-29541 | Mozilla: Files with malicious extensions could have been downloaded unsafely on Linux | HIGH | 8.8 | Jun 2, 2023 |
| CVE-2023-29540 | Using a redirect embedded into <code>sourceMappingUrls</code> could allow for navigation to external protocol links in sandboxed iframes without <code>allow-to… | MEDIUM | 6.1 | Jun 2, 2023 |
| CVE-2023-29539 | Mozilla: Content-Disposition filename truncation leads to Reflected File Download | HIGH | 8.8 | Jun 2, 2023 |
| CVE-2023-29538 | Under specific circumstances a WebExtension may have received a <code>jar:file:///</code> URI instead of a <code>moz-extension:///</code> URI during a load req… | MEDIUM | 4.3 | Jun 2, 2023 |
| CVE-2023-29537 | Multiple race conditions in the font initialization could have led to memory corruption and execution of attacker-controlled code. This vulnerability affects F… | HIGH | 7.5 | Jun 2, 2023 |
| CVE-2023-29536 | Mozilla: Invalid free from JavaScript code | HIGH | 8.8 | Jun 2, 2023 |
| CVE-2023-29535 | Mozilla: Potential Memory Corruption following Garbage Collector compaction | HIGH | 7.5 | Jun 2, 2023 |
| CVE-2023-29533 | Mozilla: Fullscreen notification obscured | HIGH | 7.5 | Jun 2, 2023 |
| CVE-2022-26486 KEV | Mozilla: Use-after-free in WebGPU IPC Framework | CRITICAL | 9.6 | Dec 22, 2022 |
| CVE-2022-26485 KEV | Mozilla: Use-after-free in XSLT parameter processing | HIGH | 8.8 | Dec 22, 2022 |
Showing 1 to 16 of 16 CVEs