Product of Mozilla
Firefox and Thunderbird
As of , 6 Mozilla Firefox and Thunderbird vulnerabilities are on CISA's list of exploited vulnerabilities; 0 were added in 2026. Patch first: CVE-2013-1690.
Patch first
| # | Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|---|
| 1 | CVE-2013-1690Denial-of-Service | Mozilla Firefox and Thunderbird | Patch this weekMetasploit module; EPSS 0.69; verified Exploit-DB entry | 0.69 | ||
| 2 | CVE-2019-11708Sandbox Escape | Mozilla Firefox and Thunderbird | Patch this weekEPSS 0.56 | 0.56 | ||
| 3 | CVE-2019-11707Type Confusion | Mozilla Firefox and Thunderbird | Patch soonVerified Exploit-DB entry | 0.38 | ||
| 4 | CVE-2019-17026Type Confusion | Mozilla Firefox and Thunderbird | Patch soon | 0.46 | ||
| 5 | CVE-2020-6820Use-After-Free | Mozilla Firefox and Thunderbird | Patch soon | 0.07 | ||
| 6 | CVE-2020-6819Use-After-Free | Mozilla Firefox and Thunderbird | Patch soon | 0.03 |
Added each year
Show the numbers
| Period | entries added |
|---|---|
| 2021 | 3 |
| 2022 | 3 |
| 2023 | none |
| 2024 | none |
| 2025 | none |
| 2026 | none |