[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2018-12359":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-06T08:55:34.825Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":68,"aliases":69,"duplicate_of":9,"upstream":70,"downstream":71,"duplicates":126,"related":127,"reserved_at":9,"published_at":143,"modified_at":144,"state":145,"summary":146,"references_raw":155,"kevs":251,"epss":252,"epss_history":255,"metrics":509,"affected":520},"CVE-2018-12359","A buffer overflow can occur when rendering canvas content while adjusting the height and width of the canvas element dynamically, causing data to be written outside of the currently computed boundaries. This results in a potentially exploitable crash. This vulnerability affects Thunderbird \u003C 60, Thunderbird \u003C 52.9, Firefox ESR \u003C 60.1, Firefox ESR \u003C 52.9, and Firefox \u003C 61.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-119","Improper Restriction of Operations within the Bounds of a Memory Buffer","The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.","weakness","Stable","Class","High",[20,24,28,32,36,40,44,48,52,56,60,64],{"id":21,"name":22,"techniques":23},"CAPEC-10","Buffer Overflow via Environment Variables",[],{"id":25,"name":26,"techniques":27},"CAPEC-100","Overflow Buffers",[],{"id":29,"name":30,"techniques":31},"CAPEC-123","Buffer Manipulation",[],{"id":33,"name":34,"techniques":35},"CAPEC-14","Client-side Injection-induced Buffer Overflow",[],{"id":37,"name":38,"techniques":39},"CAPEC-24","Filter Failure through Buffer Overflow",[],{"id":41,"name":42,"techniques":43},"CAPEC-42","MIME Conversion",[],{"id":45,"name":46,"techniques":47},"CAPEC-44","Overflow Binary Resource File",[],{"id":49,"name":50,"techniques":51},"CAPEC-45","Buffer Overflow via Symbolic Links",[],{"id":53,"name":54,"techniques":55},"CAPEC-46","Overflow Variables and Tags",[],{"id":57,"name":58,"techniques":59},"CAPEC-47","Buffer Overflow via Parameter Expansion",[],{"id":61,"name":62,"techniques":63},"CAPEC-8","Buffer Overflow in an API Call",[],{"id":65,"name":66,"techniques":67},"CAPEC-9","Buffer Overflow in Local Command-Line Utilities",[],[],[],[],[72,74,76,78,80,82,84,86,88,90,92,94,96,98,100,102,104,106,108,110,112,114,116,118,120,122,124],{"_key":73},"RHSA-2018:2112",{"_key":75},"RHSA-2018:2113",{"_key":77},"RHSA-2018:2251",{"_key":79},"RHSA-2018:2252",{"_key":81},"OPENSUSE-SU-2024:10601-1",{"_key":83},"SUSE-SU-2018:2174-1",{"_key":85},"SUSE-SU-2018:2298-1",{"_key":87},"SUSE-SU-2018:2322-1",{"_key":89},"SUSE-SU-2018:2322-2",{"_key":91},"SUSE-SU-2018:2325-1",{"_key":93},"SUSE-SU-2018:3247-1",{"_key":95},"OPENSUSE-SU-2018:2807-1",{"_key":97},"OPENSUSE-SU-2018:3687-1",{"_key":99},"OPENSUSE-SU-2024:10600-1",{"_key":101},"OPENSUSE-SU-2024:14572-1",{"_key":103},"DLA-1406-1",{"_key":105},"DLA-1425-1",{"_key":107},"DSA-4235-1",{"_key":109},"DSA-4244-1",{"_key":111},"MGASA-2018-0305",{"_key":113},"MGASA-2018-0316",{"_key":115},"MGASA-2018-0321",{"_key":117},"MGASA-2018-0480",{"_key":119},"UBUNTU-CVE-2018-12359",{"_key":121},"USN-3705-1",{"_key":123},"USN-3714-1",{"_key":125},"DEBIAN-CVE-2018-12359",[],[128,129,130,131,132,133,134,135,136,137,138,139,140,141,142],{"_key":81},{"_key":83},{"_key":85},{"_key":87},{"_key":89},{"_key":91},{"_key":93},{"_key":95},{"_key":97},{"_key":99},{"_key":101},{"_key":111},{"_key":113},{"_key":115},{"_key":117},"2018-10-18T13:00:00.000Z","2024-08-05T08:30:59.942Z","Modified",{"cisa_kev":147,"cisa_ransomware":147,"cisa_vendor":9,"epss_severity":148,"epss_score":149,"severity":150,"severity_score":151,"severity_version":152,"severity_source":153,"severity_vector":154,"severity_status":145},false,"low",0.04919,"high",8.8,"v3.0","nvd","CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",[156,165,171,177,181,186,190,195,199,203,207,211,216,220,224,228,234,238,243,247],{"url":157,"sources":158,"tags":160},"https://bugzilla.mozilla.org/show_bug.cgi?id=1459162",[159,153],"cve.org",[161,162,163,164],"X Refsource CONFIRM","Issue Tracking","Permissions Required","Vendor Advisory",{"url":166,"sources":167,"tags":168},"https://security.gentoo.org/glsa/201810-01",[159,153],[164,169,170],"X Refsource GENTOO","Third Party Advisory",{"url":172,"sources":173,"tags":174},"http://www.securityfocus.com/bid/104555",[159,153],[175,176,170],"VDB Entry","X Refsource BID",{"url":178,"sources":179,"tags":180},"https://www.mozilla.org/security/advisories/mfsa2018-15/",[159,153],[161,164],{"url":182,"sources":183,"tags":184},"https://access.redhat.com/errata/RHSA-2018:2112",[159,153],[164,185,170],"X Refsource REDHAT",{"url":187,"sources":188,"tags":189},"https://security.gentoo.org/glsa/201811-13",[159,153],[164,169,170],{"url":191,"sources":192,"tags":193},"https://www.debian.org/security/2018/dsa-4235",[159,153],[164,194,170],"X Refsource DEBIAN",{"url":196,"sources":197,"tags":198},"https://www.mozilla.org/security/advisories/mfsa2018-18/",[159,153],[161,164],{"url":200,"sources":201,"tags":202},"https://access.redhat.com/errata/RHSA-2018:2113",[159,153],[164,185,170],{"url":204,"sources":205,"tags":206},"https://www.mozilla.org/security/advisories/mfsa2018-16/",[159,153],[161,164],{"url":208,"sources":209,"tags":210},"https://www.debian.org/security/2018/dsa-4244",[159,153],[164,194,170],{"url":212,"sources":213,"tags":214},"http://www.securitytracker.com/id/1041193",[159,153],[175,215,170],"X Refsource SECTRACK",{"url":217,"sources":218,"tags":219},"https://www.mozilla.org/security/advisories/mfsa2018-19/",[159,153],[161,164],{"url":221,"sources":222,"tags":223},"https://access.redhat.com/errata/RHSA-2018:2252",[159,153],[164,185,170],{"url":225,"sources":226,"tags":227},"https://www.mozilla.org/security/advisories/mfsa2018-17/",[159,153],[161,164],{"url":229,"sources":230,"tags":231},"https://lists.debian.org/debian-lts-announce/2018/07/msg00013.html",[159,153],[232,233,170],"Mailing List","X Refsource MLIST",{"url":235,"sources":236,"tags":237},"https://access.redhat.com/errata/RHSA-2018:2251",[159,153],[164,185,170],{"url":239,"sources":240,"tags":241},"https://usn.ubuntu.com/3705-1/",[159,153],[164,242,170],"X Refsource UBUNTU",{"url":244,"sources":245,"tags":246},"https://usn.ubuntu.com/3714-1/",[159,153],[164,242,170],{"url":248,"sources":249,"tags":250},"https://lists.debian.org/debian-lts-announce/2018/06/msg00014.html",[159,153],[232,233,170],[],{"date":253,"score":149,"percentile":254},"2026-06-05",0.89807,[256,260,263,266,269,272,275,277,279,281,284,287,290,292,294,298,301,304,307,311,314,316,319,321,325,328,331,334,337,340,342,344,347,350,352,354,357,360,363,366,368,370,373,376,379,382,385,388,391,394,397,400,403,406,410,413,415,417,420,423,426,429,432,434,436,439,441,443,446,449,452,456,459,462,465,468,470,472,475,477,480,483,486,489,491,494,497,500,503,506],{"date":257,"score":258,"percentile":259},"2025-11-04",0.04016,0.87954,{"date":261,"score":258,"percentile":262},"2025-11-05",0.87956,{"date":264,"score":258,"percentile":265},"2025-11-06",0.87942,{"date":267,"score":258,"percentile":268},"2025-11-07",0.87948,{"date":270,"score":258,"percentile":271},"2025-11-08",0.87951,{"date":273,"score":258,"percentile":274},"2025-11-09",0.87946,{"date":276,"score":258,"percentile":274},"2025-11-10",{"date":278,"score":258,"percentile":271},"2025-11-11",{"date":280,"score":258,"percentile":262},"2025-11-12",{"date":282,"score":258,"percentile":283},"2025-11-13",0.87962,{"date":285,"score":258,"percentile":286},"2025-11-14",0.87966,{"date":288,"score":258,"percentile":289},"2025-11-15",0.87961,{"date":291,"score":258,"percentile":286},"2025-11-16",{"date":293,"score":258,"percentile":283},"2025-11-17",{"date":295,"score":296,"percentile":297},"2025-11-18",0.02406,0.8375,{"date":299,"score":296,"percentile":300},"2025-11-19",0.83752,{"date":302,"score":296,"percentile":303},"2025-11-20",0.83757,{"date":305,"score":258,"percentile":306},"2025-11-21",0.87977,{"date":308,"score":309,"percentile":310},"2025-11-22",0.04213,0.88262,{"date":312,"score":309,"percentile":313},"2025-11-23",0.88258,{"date":315,"score":309,"percentile":313},"2025-11-24",{"date":317,"score":309,"percentile":318},"2025-11-25",0.88259,{"date":320,"score":309,"percentile":318},"2025-11-26",{"date":322,"score":323,"percentile":324},"2025-11-27",0.04122,0.88132,{"date":326,"score":323,"percentile":327},"2025-11-28",0.88122,{"date":329,"score":323,"percentile":330},"2025-11-29",0.88197,{"date":332,"score":323,"percentile":333},"2025-11-30",0.88193,{"date":335,"score":323,"percentile":336},"2025-12-01",0.88256,{"date":338,"score":323,"percentile":339},"2025-12-02",0.88257,{"date":341,"score":323,"percentile":336},"2025-12-03",{"date":343,"score":323,"percentile":333},"2025-12-04",{"date":345,"score":323,"percentile":346},"2025-12-05",0.88195,{"date":348,"score":323,"percentile":349},"2025-12-06",0.88194,{"date":351,"score":323,"percentile":333},"2025-12-07",{"date":353,"score":323,"percentile":333},"2025-12-08",{"date":355,"score":323,"percentile":356},"2025-12-09",0.88206,{"date":358,"score":258,"percentile":359},"2025-12-10",0.88064,{"date":361,"score":258,"percentile":362},"2025-12-11",0.88067,{"date":364,"score":258,"percentile":365},"2025-12-12",0.88072,{"date":367,"score":258,"percentile":365},"2025-12-13",{"date":369,"score":258,"percentile":365},"2025-12-14",{"date":371,"score":258,"percentile":372},"2025-12-15",0.88071,{"date":374,"score":258,"percentile":375},"2025-12-16",0.88077,{"date":377,"score":258,"percentile":378},"2025-12-17",0.8808,{"date":380,"score":258,"percentile":381},"2025-12-18",0.88088,{"date":383,"score":258,"percentile":384},"2025-12-19",0.88089,{"date":386,"score":258,"percentile":387},"2025-12-20",0.8809,{"date":389,"score":258,"percentile":390},"2025-12-21",0.88097,{"date":392,"score":258,"percentile":393},"2025-12-22",0.88096,{"date":395,"score":258,"percentile":396},"2025-12-23",0.88101,{"date":398,"score":258,"percentile":399},"2025-12-24",0.88104,{"date":401,"score":258,"percentile":402},"2025-12-25",0.88114,{"date":404,"score":258,"percentile":405},"2025-12-26",0.88113,{"date":407,"score":408,"percentile":409},"2025-12-27",0.03404,0.87109,{"date":411,"score":258,"percentile":412},"2025-12-28",0.88108,{"date":414,"score":258,"percentile":396},"2025-12-29",{"date":416,"score":258,"percentile":412},"2025-12-30",{"date":418,"score":258,"percentile":419},"2025-12-31",0.88118,{"date":421,"score":258,"percentile":422},"2026-01-01",0.88175,{"date":424,"score":258,"percentile":425},"2026-01-02",0.88171,{"date":427,"score":258,"percentile":428},"2026-01-03",0.88169,{"date":430,"score":258,"percentile":431},"2026-01-04",0.8811,{"date":433,"score":258,"percentile":412},"2026-01-05",{"date":435,"score":258,"percentile":405},"2026-01-06",{"date":437,"score":258,"percentile":438},"2026-01-07",0.88116,{"date":440,"score":258,"percentile":327},"2026-01-08",{"date":442,"score":258,"percentile":327},"2026-01-09",{"date":444,"score":258,"percentile":445},"2026-01-10",0.88124,{"date":447,"score":258,"percentile":448},"2026-01-11",0.88117,{"date":450,"score":258,"percentile":451},"2026-01-12",0.88115,{"date":453,"score":454,"percentile":455},"2026-01-13",0.03167,0.86528,{"date":457,"score":454,"percentile":458},"2026-01-14",0.86541,{"date":460,"score":454,"percentile":461},"2026-01-15",0.8654,{"date":463,"score":454,"percentile":464},"2026-01-16",0.86545,{"date":466,"score":454,"percentile":467},"2026-01-17",0.86546,{"date":469,"score":454,"percentile":467},"2026-01-18",{"date":471,"score":454,"percentile":458},"2026-01-19",{"date":473,"score":454,"percentile":474},"2026-01-20",0.86535,{"date":476,"score":454,"percentile":461},"2026-01-21",{"date":478,"score":454,"percentile":479},"2026-01-22",0.86547,{"date":481,"score":454,"percentile":482},"2026-01-23",0.86563,{"date":484,"score":454,"percentile":485},"2026-01-24",0.86571,{"date":487,"score":454,"percentile":488},"2026-01-25",0.86566,{"date":490,"score":454,"percentile":482},"2026-01-26",{"date":492,"score":454,"percentile":493},"2026-01-27",0.86564,{"date":495,"score":454,"percentile":496},"2026-01-28",0.86567,{"date":498,"score":454,"percentile":499},"2026-01-29",0.86569,{"date":501,"score":454,"percentile":502},"2026-01-30",0.86573,{"date":504,"score":454,"percentile":505},"2026-01-31",0.86575,{"date":507,"score":454,"percentile":508},"2026-02-01",0.86642,[510],{"source":153,"cvss_v2_0":511,"cvss_v3_0":516,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":512,"baseSeverity":9,"vectorString":513,"impactScore":514,"exploitabilityScore":515},6.8,"AV:N/AC:M/Au:N/C:P/I:P/A:P",6.4,8.6,{"baseScore":151,"baseSeverity":517,"vectorString":154,"impactScore":518,"exploitabilityScore":519},"HIGH",9.8,7.2,[521,536,545,558,575,586,595,601,607,614,619],{"ecosystem":9,"name":522,"vendor":523,"product":524,"cpe_part":525,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":526},"ubuntu linux","canonical","ubuntu_linux","o",[527,530,532,534],{"version":528,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"14.04","cpe",{"version":531,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"16.04",{"version":533,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"17.10",{"version":535,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"18.04",{"ecosystem":9,"name":537,"vendor":538,"product":539,"cpe_part":525,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":540},"debian linux","debian","debian_linux",[541,543],{"version":542,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"8.0",{"version":544,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0",{"ecosystem":9,"name":546,"vendor":9,"product":546,"cpe_part":9,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":547},"Firefox",[548,553],{"version":549,"is_range":550,"range_type":529,"version_start":9,"version_start_type":9,"version_end":551,"version_end_type":552,"fixed_in":9},"lt61.0",true,"61.0","excluding",{"version":554,"is_range":550,"range_type":159,"version_start":555,"version_start_type":556,"version_end":557,"version_end_type":552,"fixed_in":9},">= unspecified, \u003C 61","unspecified","including","61",{"ecosystem":9,"name":559,"vendor":560,"product":561,"cpe_part":562,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":563},"firefox esr","mozilla","firefox_esr","a",[564,567,571,573],{"version":565,"is_range":550,"range_type":529,"version_start":9,"version_start_type":9,"version_end":566,"version_end_type":552,"fixed_in":9},"lt52.9","52.9",{"version":568,"is_range":550,"range_type":529,"version_start":569,"version_start_type":556,"version_end":570,"version_end_type":552,"fixed_in":9},"gte53.0_lt60.1","53.0","60.1",{"version":572,"is_range":550,"range_type":159,"version_start":555,"version_start_type":556,"version_end":570,"version_end_type":552,"fixed_in":9},">= unspecified, \u003C 60.1",{"version":574,"is_range":550,"range_type":159,"version_start":555,"version_start_type":556,"version_end":566,"version_end_type":552,"fixed_in":9},">= unspecified, \u003C 52.9",{"ecosystem":9,"name":576,"vendor":560,"product":577,"cpe_part":562,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":578},"Thunderbird","thunderbird",[579,580,582,585],{"version":565,"is_range":550,"range_type":529,"version_start":9,"version_start_type":9,"version_end":566,"version_end_type":552,"fixed_in":9},{"version":581,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"52.9.1",{"version":583,"is_range":550,"range_type":159,"version_start":555,"version_start_type":556,"version_end":584,"version_end_type":552,"fixed_in":9},">= unspecified, \u003C 60","60",{"version":574,"is_range":550,"range_type":159,"version_start":555,"version_start_type":556,"version_end":566,"version_end_type":552,"fixed_in":9},{"ecosystem":9,"name":587,"vendor":588,"product":589,"cpe_part":525,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":590},"enterprise linux desktop","redhat","enterprise_linux_desktop",[591,593],{"version":592,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.0",{"version":594,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"7.0",{"ecosystem":9,"name":596,"vendor":588,"product":597,"cpe_part":525,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":598},"enterprise linux server","enterprise_linux_server",[599,600],{"version":592,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":594,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"ecosystem":9,"name":602,"vendor":588,"product":603,"cpe_part":525,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":604},"enterprise linux server aus","enterprise_linux_server_aus",[605],{"version":606,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"7.6",{"ecosystem":9,"name":608,"vendor":588,"product":609,"cpe_part":525,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":610},"enterprise linux server eus","enterprise_linux_server_eus",[611,613],{"version":612,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"7.5",{"version":606,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"ecosystem":9,"name":615,"vendor":588,"product":616,"cpe_part":525,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":617},"enterprise linux server tus","enterprise_linux_server_tus",[618],{"version":606,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"ecosystem":9,"name":620,"vendor":588,"product":621,"cpe_part":525,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":622},"enterprise linux workstation","enterprise_linux_workstation",[623,624],{"version":592,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":594,"is_range":147,"range_type":529,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9}]