Skip to main content

Vendor/product archive

mozilla / seamonkey CVEs

Beta · best-effort

707 CVEs tagged to mozilla / seamonkey329 Critical, 76 High, 288 Medium, 14 Low, 0 Unrated.

CVE-2011-0067

Published May 7, 2011

Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, does not properly implement autocompletion for forms, which allows remote attackers to read for…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-0066

Published May 7, 2011

Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allows remote attackers to execute arbitrary code via vectors r…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2011-0065

Published May 7, 2011

Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allows remote attackers to execute arbitrary code via vectors r…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2011-1712

Published Apr 15, 2011

The txXPathNodeUtils::getXSLTId function in txMozillaXPathTreeWalker.cpp and txStandaloneXPathTreeWalker.cpp in Mozilla Firefox before 3.5.19, 3.6.x before 3.6.17, and 4.x before…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-0059

Published Mar 2, 2011

Cross-site request forgery (CSRF) vulnerability in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, allows remote attackers to hijack the authen…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-0057

Published Mar 2, 2011

Use-after-free vulnerability in the Web Workers implementation in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, allows remote attackers to ex…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2011-0056

Published Mar 2, 2011

Buffer overflow in the JavaScript engine in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, might allow remote attackers to execute arbitrary c…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2011-0055

Published Mar 2, 2011

Use-after-free vulnerability in the JSON.stringify method in js3250.dll in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, might allow remote a…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2011-0054

Published Mar 2, 2011

Buffer overflow in the JavaScript engine in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, might allow remote attackers to execute arbitrary c…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2011-0051

Published Mar 2, 2011

Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, does not properly handle certain recursive eval calls, which makes it easier for remote attacke…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-3775

Published Dec 10, 2010

Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, does not properly handle certain redirections involving data: URLs and Java LiveConnect scripts…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-3774

Published Dec 10, 2010

The NS_SecurityCompareURIs function in netwerk/base/public/nsNetUtil.h in Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, does not properly han…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-3773

Published Dec 10, 2010

Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, when the XMLHttpRequestSpy module in the Firebug add-on is used, does not properly handle inter…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-3772

Published Dec 10, 2010

Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, does not properly calculate index values for certain child content in a XUL tree, which allows…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-3771

Published Dec 10, 2010

Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, does not properly handle injection of an ISINDEX element into an about:blank page, which allows…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-3770

Published Dec 10, 2010

Multiple cross-site scripting (XSS) vulnerabilities in the rendering engine in Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, allow remote att…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 376-400 of 707 CVEsPage 16 of 29