CVEs (1,867)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Mozilla 3Firefox SeamonkeyThunderbirdApr 16, 2026 Apr 14, 2006 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Unspecified vulnerability in Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 allows remote attackers to bypass same-origin protections and cond...Show more |
1Mozilla 4Firefox Mozilla SuiteSeamonkey+1 moreApr 16, 2026 Apr 14, 2006 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 returns the Object class prototype instead of the global window object when (1) .valueOf.call o...Show more |
1Mozilla 4Firefox Mozilla SuiteSeamonkey+1 moreApr 16, 2026 Apr 14, 2006 N/A· v4 N/A· v3 9.3 HIGH· v2 Integer overflow in Mozilla Firefox and Thunderbird 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0.1 allows remote attackers to execute arbitrary code via a large number...Show more |
2Canonical Mozilla5Firefox Mozilla SuiteSeamonkey+2 moreApr 16, 2026 Apr 14, 2006 N/A· v4 N/A· v3 9.3 HIGH· v2 Unspecified vulnerability in Mozilla Firefox and Thunderbird 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0.1 allows remote attackers to execute arbitrary code via unknow...Show more |
2Canonical Mozilla5Firefox Mozilla SuiteSeamonkey+2 moreApr 16, 2026 Apr 14, 2006 N/A· v4 N/A· v3 7.6 HIGH· v2 Unspecified vulnerability in Mozilla Firefox and Thunderbird 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0.1 allows remote attackers to gain chrome privileges via multip...Show more |
Unspecified vulnerability in Firefox and Thunderbird 1.5 before 1.5.0.2, and SeaMonkey before 1.0.1, allows remote attackers to bypass the js_ValueToFunctionObject check and execute arbitrary code via unknown vectors inv...Show more |
2Debian Mozilla5Debian Linux FirefoxMozilla Suite+2 moreApr 16, 2026 Apr 14, 2006 N/A· v4 N/A· v3 7.5 HIGH· v2 Unspecified vulnerability in Firefox and Thunderbird before 1.5.0.2, 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0.1 allows remote attackers to cause a denial of service (crash) and possibly e...Show more |
Unspecified vulnerability in Firefox and Thunderbird before 1.5.0.2, and SeaMonkey before 1.0.1, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown attack vectors...Show more |
2Debian Mozilla4Debian Linux FirefoxSeamonkey+1 moreApr 16, 2026 Apr 14, 2006 N/A· v4 N/A· v3 7.5 HIGH· v2 Unspecified vulnerability in Firefox and Thunderbird before 1.5.0.2, and SeaMonkey before 1.0.1, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown attack vectors...Show more |
2Debian Mozilla4Debian Linux FirefoxSeamonkey+1 moreApr 16, 2026 Apr 14, 2006 N/A· v4 N/A· v3 7.5 HIGH· v2 Unspecified vulnerability in Firefox and Thunderbird before 1.5.0.2, and SeaMonkey before 1.0.1, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown attack vectors...Show more |
Unspecified vulnerability in Firefox and Thunderbird before 1.5.0.2, and SeaMonkey before 1.0.1, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown attack vectors...Show more |
1Mozilla 4Firefox Mozilla SuiteSeamonkey+1 moreApr 16, 2026 Apr 14, 2006 N/A· v4 N/A· v3 9.3 HIGH· v2 nsHTMLContentSink.cpp in Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 allows remote attackers to cause a denial of service (crash) and possi...Show more |
Mozilla Firefox and Thunderbird 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0.1 allows remote attackers to execute arbitrary code via "an invalid and non-sensical orderi...Show more |
The HTML rendering engine in Mozilla Thunderbird 1.5, when "Block loading of remote images in mail messages" is enabled, does not properly block external images from inline HTML attachments, which could allow remote atta...Show more |
The WYSIWYG rendering engine ("rich mail" editor) in Mozilla Thunderbird 1.0.7 and earlier allows user-assisted attackers to bypass javascript security settings and obtain sensitive information or cause a crash via an e-...Show more |
Mozilla Thunderbird 1.5 allows user-assisted attackers to cause an unspecified denial of service by tricking the user into importing an LDIF file with a long field into the address book, as demonstrated by a long homePho...Show more |
1Mozilla 3Firefox SeamonkeyThunderbirdApr 16, 2026 Feb 2, 2006 N/A· v4 N/A· v3 6.4 MEDIUM· v2 The E4X implementation in Mozilla Firefox before 1.5.0.1, Thunderbird 1.5 if running Javascript in mail, and SeaMonkey before 1.0 exposes the internal "AnyName" object to external interfaces, which allows multiple cooper...Show more |
1Mozilla 3Firefox SeamonkeyThunderbirdApr 16, 2026 Feb 2, 2006 N/A· v4 N/A· v3 5.1 MEDIUM· v2 Multiple integer overflows in Mozilla Firefox 1.5, Thunderbird 1.5 if Javascript is enabled in mail, and SeaMonkey before 1.0 might allow remote attackers to execute arbitrary code via the (1) EscapeAttributeValue in jsx...Show more |
1Mozilla 3Firefox SeamonkeyThunderbirdApr 16, 2026 Feb 2, 2006 N/A· v4 N/A· v3 5.1 MEDIUM· v2 Mozilla Firefox 1.5, Thunderbird 1.5 if Javascript is enabled in mail, and SeaMonkey before 1.0 might allow remote attackers to execute arbitrary code via the QueryInterface method of the built-in Location and Navigator...Show more |
Mozilla Firefox before 1.5.0.1, Thunderbird 1.5 if running Javascript in mail, and SeaMonkey before 1.0 allow remote attackers to execute arbitrary code by changing an element's style from position:relative to position:s...Show more |