How we count
Every figure on this page is a direct count of entries in CISA’s Known Exploited Vulnerabilities catalog attributed by CISA to Mozilla (KEV field vendorProject), refreshed daily. “Ransomware-linked” counts entries CISA marks as known to be used in ransomware campaigns; the remainder are “unknown” to CISA, not confirmed ransomware-free. A KEV listing means the vulnerability has been observed exploited in the wild. Snapshot as of 2026-08-31.
Exploited Mozilla vulnerabilities (CISA KEV)
| CVE | Product | Vulnerability | Added | |
|---|---|---|---|---|
| CVE-2010-3765 | Multiple Products | Mozilla Multiple Products Remote Code Execution Vulnerability | 2025-10-06 | |
| CVE-2024-9680 | Firefox | Mozilla Firefox Use-After-Free Vulnerability | 2024-10-15 | ransomware |
| CVE-2016-9079 | Firefox, Firefox ESR, and Thunderbird | Mozilla Firefox, Firefox ESR, and Thunderbird Use-After-Free Vulnerability | 2023-06-22 | |
| CVE-2015-4495 | Firefox | Mozilla Firefox Security Feature Bypass Vulnerability | 2022-05-25 | |
| CVE-2019-11707 | Firefox and Thunderbird | Mozilla Firefox and Thunderbird Type Confusion Vulnerability | 2022-05-23 | |
| CVE-2019-11708 | Firefox and Thunderbird | Mozilla Firefox and Thunderbird Sandbox Escape Vulnerability | 2022-05-23 | |
| CVE-2013-1690 | Firefox and Thunderbird | Mozilla Firefox and Thunderbird Denial-of-Service Vulnerability | 2022-03-28 | |
| CVE-2022-26486 | Firefox | Mozilla Firefox Use-After-Free Vulnerability | 2022-03-07 | |
| CVE-2022-26485 | Firefox | Mozilla Firefox Use-After-Free Vulnerability | 2022-03-07 | |
| CVE-2013-1675 | Firefox | Mozilla Firefox Information Disclosure Vulnerability | 2022-03-03 | |
| CVE-2020-6819 | Firefox and Thunderbird | Mozilla Firefox And Thunderbird Use-After-Free Vulnerability | 2021-11-03 | |
| CVE-2020-6820 | Firefox and Thunderbird | Mozilla Firefox And Thunderbird Use-After-Free Vulnerability | 2021-11-03 | |
| CVE-2019-17026 | Firefox and Thunderbird | Mozilla Firefox And Thunderbird Type Confusion Vulnerability | 2021-11-03 |
← All vendors by exploited-vulnerability count
🤖 Generated by defend.network from the CISA KEV catalog. Counts are deterministic aggregates of official CISA data; verify individual advisories at the linked sources.