← KEV catalog
CISA known exploited vulnerability

CVE-2019-11707

Mozilla Firefox and Thunderbird Type Confusion Vulnerability

SOURCE FACT

Mozilla · Firefox and Thunderbird

Mozilla Firefox and Thunderbird contain a type confusion vulnerability that can occur when manipulating JavaScript objects due to issues in Array.pop, allowing for an exploitable crash.

Required action

Apply updates per vendor instructions.

CISA notes

https://nvd.nist.gov/vuln/detail/CVE-2019-11707

View source evidence →

CHECK YOUR OUTSIDE-IN INVENTORY

Could this product be present?