The host is installed with Google Chrome before 124.0.6367.78 and Microsoft Edge before 124.0.2478.67 and is prone to a use after free vulnerability. A flaw is present in the application, which fails to handle unspecified vectors. Successful exploitation allows attackers to have unspecified impact.
The host is installed with Oracle Java SE through 8u401, 11.0.22, 17.0.10, 21.0.2, or 22.0 and is prone to an unspecified vulnerability. A flaw is present in the application, which fails to handle vectors related to Hotspot. Successful exploitation allows attackers to affect availability.
The host is installed with Oracle Java SE through 11.0.22, 17.0.10, 21.0.2, or 22.0 and is prone to an unspecified vulnerability. A flaw is present in the application, which fails to handle vectors related to Networking. Successful exploitation allows attackers to affect integrity.
The host is installed with Oracle Java SE through 11.0.22, 17.0.10, 21.0.2, or 22.0 and is prone to an unspecified vulnerability. A flaw is present in the application, which fails to handle vectors related to Hotspot. Successful exploitation allows attackers to affect integrity.
The host is installed with Oracle Java SE through 8u401, or 11.0.22 and is prone to an unspecified vulnerability. A flaw is present in the application, which fails to handle vectors related to Concurrency. Successful exploitation allows attackers to affect availability.
The host is installed with Oracle Java SE through 8u401, 11.0.22, 17.0.10, 21.0.2, or 22.0 and is prone to an unspecified vulnerability. A flaw is present in the application, which fails to handle vectors related to Hotspot. Successful exploitation allows attackers to affect integrity.
Mozilla Firefox 124, Mozilla Firefox ESR 115.10 and Mozilla Thunderbird 115.10.0 : The permission prompt input delay could have expired while the window is not in focus, which made the prompt vulnerable to clickjacking by malicious websites.
Mozilla Firefox 125, Mozilla Firefox ESR 115.10 and Mozilla Thunderbird 115.10.0 : There was no limit to the number of HTTP/2 CONTINUATION frames that would be processed. A server could abuse this to create an Out of Memory condition in the browser.
Mozilla Firefox 125, Mozilla Firefox ESR 115.10 and Mozilla Thunderbird 115.10.0 : GetBoundName could return the wrong version of an object when JIT optimizations were applied.
Mozilla Firefox 125, Mozilla Firefox ESR 115.10 and Mozilla Thunderbird 115.10.0 : In some code patterns the JIT incorrectly optimized switch statements and generated code with out-of-bounds-reads.