Skip to main content

Vendor/product archive

mozilla / seamonkey CVEs

Beta · best-effort

707 CVEs tagged to mozilla / seamonkey329 Critical, 76 High, 288 Medium, 14 Low, 0 Unrated.

CVE-2010-0181

Published Apr 5, 2010

Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, and SeaMonkey before 2.0.4, executes a mail application in situations where an IMG element has a SRC attribute that is a redir…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-0178

Published Apr 5, 2010

Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2, and SeaMonkey before 2.0.4, does not prevent applets from interpreting mouse clicks as drag-and-drop act…

CVSS 7.6 · High
Vendor/product tagsBeta · best-effort

CVE-2010-0177

Published Apr 5, 2010

Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2, and SeaMonkey before 2.0.4, frees the contents of the window.navigator.plugins array while a reference t…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-1125

Published Mar 26, 2010

The JavaScript implementation in Mozilla Firefox 3.x before 3.5.10 and 3.6.x before 3.6.4, and SeaMonkey before 2.0.5, allows remote attackers to send selected keystrokes to a for…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-0163

Published Mar 23, 2010

Mozilla Thunderbird before 2.0.0.24 and SeaMonkey before 1.1.19 process e-mail attachments with a parser that performs casts and line termination incorrectly, which allows remote…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-3385

Published Mar 23, 2010

The mail component in Mozilla SeaMonkey before 1.1.19 does not properly restrict execution of scriptable plugin content, which allows user-assisted remote attackers to obtain sens…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2010-0162

Published Feb 22, 2010

Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly support the application/octet-stream content type as a protection mechani…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-0160

Published Feb 22, 2010

The Web Worker functionality in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly handle array data types for posted messag…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2009-3988

Published Feb 22, 2010

Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly restrict read access to object properties in showModalDialog, which allow…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-1571

Published Feb 22, 2010

Use-after-free vulnerability in the HTML parser in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, Thunderbird before 3.0.2, and SeaMonkey before 2.0.3 allows remote a…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2009-4629

Published Jan 29, 2010

Mozilla Necko, as used in Thunderbird 3.0.1, SeaMonkey, and other applications, performs DNS prefetching even when the app type is APP_TYPE_MAIL or APP_TYPE_EDITOR, which makes it…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-3987

Published Dec 17, 2009

The GeckoActiveXObject function in Mozilla Firefox before 3.0.16 and 3.5.x before 3.5.6, and SeaMonkey before 2.0.1, generates different exception messages depending on whether th…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 451-475 of 707 CVEsPage 19 of 29