[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2019-11761":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T08:55:32.481Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":244,"aliases":245,"duplicate_of":9,"upstream":246,"downstream":247,"duplicates":304,"related":305,"reserved_at":9,"published_at":319,"modified_at":320,"state":321,"summary":322,"references_raw":331,"kevs":364,"epss":365,"epss_history":368,"metrics":633,"affected":644},"CVE-2019-11761","By using a form with a data URI it was possible to gain access to the privileged JSONView object that had been cloned into content. Impact from exposing this object appears to be minimal, however it was a bypass of existing defense in depth mechanisms. This vulnerability affects Firefox \u003C 70, Thunderbird \u003C 68.2, and Firefox ESR \u003C 68.2.",null,[11,28],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-362","Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')","The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.","weakness","Draft","Class","Medium",[20,24],{"id":21,"name":22,"techniques":23},"CAPEC-26","Leveraging Race Conditions",[],{"id":25,"name":26,"techniques":27},"CAPEC-29","Leveraging Time-of-Check and Time-of-Use (TOCTOU) Race Conditions",[],{"_key":29,"id":29,"name":30,"description":31,"type":15,"status":32,"abstraction":17,"likelihood_of_exploit":33,"capec":34},"CWE-862","Missing Authorization","The product does not perform an authorization check when an actor attempts to access a resource or perform an action.","Incomplete","High",[35],{"id":36,"name":37,"techniques":38},"CAPEC-665","Exploitation of Thunderbolt Protection Flaws",[39,76,116],{"id":40,"name":41,"tactics":42,"countermeasures":49},"T1211","Exploitation for Stealth",[43,46],{"id":44,"name":45},"TA0030","Defense Evasion",{"id":47,"name":48},"TA0005","Stealth",[50,55,59,63,68,72],{"id":51,"name":52,"tactic":53},"D3-MBT","Memory Boundary Tracking",{"name":54},"Detect",{"id":56,"name":57,"tactic":58},"D3-PCSV","Process Code Segment Verification",{"name":54},{"id":60,"name":61,"tactic":62},"D3-SSC","Shadow Stack Comparisons",{"name":54},{"id":64,"name":65,"tactic":66},"D3-PSEP","Process Segment Execution Prevention",{"name":67},"Harden",{"id":69,"name":70,"tactic":71},"D3-SAOR","Segment Address Offset Randomization",{"name":67},{"id":73,"name":74,"tactic":75},"D3-SFCV","Stack Frame Canary Validation",{"name":67},{"id":77,"name":78,"tactics":79,"countermeasures":85},"T1542.002","Component Firmware",[80,81,82],{"id":44,"name":45},{"id":47,"name":48},{"id":83,"name":84},"TA0110","Persistence",[86,91,95,99,103,107,111],{"id":87,"name":88,"tactic":89},"D3-SWI","Software Inventory",{"name":90},"Model",{"id":92,"name":93,"tactic":94},"D3-AVE","Asset Vulnerability Enumeration",{"name":90},{"id":96,"name":97,"tactic":98},"D3-FEMC","Firmware Embedded Monitoring Code",{"name":54},{"id":100,"name":101,"tactic":102},"D3-FV","Firmware Verification",{"name":54},{"id":104,"name":105,"tactic":106},"D3-FBA","Firmware Behavior Analysis",{"name":54},{"id":108,"name":109,"tactic":110},"D3-SU","Software Update",{"name":67},{"id":112,"name":113,"tactic":114},"D3-RS","Restore Software",{"name":115},"Restore",{"id":117,"name":118,"tactics":119,"countermeasures":128},"T1556","Modify Authentication Process",[120,121,124,125],{"id":44,"name":45},{"id":122,"name":123},"TA0112","Defense Impairment",{"id":83,"name":84},{"id":126,"name":127},"TA0031","Credential Access",[129,133,137,141,145,149,153,157,161,165,170,174,178,182,186,191,195,199,203,208,212,216,220,224,228,232,236,240],{"id":130,"name":131,"tactic":132},"D3-CI","Configuration Inventory",{"name":90},{"id":134,"name":135,"tactic":136},"D3-NTPM","Network Traffic Policy Mapping",{"name":90},{"id":138,"name":139,"tactic":140},"D3-AM","Access Modeling",{"name":90},{"id":142,"name":143,"tactic":144},"D3-FA","File Analysis",{"name":54},{"id":146,"name":147,"tactic":148},"D3-FIM","File Integrity Monitoring",{"name":54},{"id":150,"name":151,"tactic":152},"D3-PLA","Process Lineage Analysis",{"name":54},{"id":154,"name":155,"tactic":156},"D3-PSMD","Process Self-Modification Detection",{"name":54},{"id":158,"name":159,"tactic":160},"D3-PSA","Process Spawn Analysis",{"name":54},{"id":162,"name":163,"tactic":164},"D3-SFA","System File Analysis",{"name":54},{"id":166,"name":167,"tactic":168},"D3-FEV","File Eviction",{"name":169},"Evict",{"id":171,"name":172,"tactic":173},"D3-PT","Process Termination",{"name":169},{"id":175,"name":176,"tactic":177},"D3-PS","Process Suspension",{"name":169},{"id":179,"name":180,"tactic":181},"D3-HR","Host Reboot",{"name":169},{"id":183,"name":184,"tactic":185},"D3-HS","Host Shutdown",{"name":169},{"id":187,"name":188,"tactic":189},"D3-DF","Decoy File",{"name":190},"Deceive",{"id":192,"name":193,"tactic":194},"D3-FE","File Encryption",{"name":67},{"id":196,"name":197,"tactic":198},"D3-RF","Restore File",{"name":115},{"id":200,"name":201,"tactic":202},"D3-RC","Restore Configuration",{"name":115},{"id":204,"name":205,"tactic":206},"D3-CF","Content Filtering",{"name":207},"Isolate",{"id":209,"name":210,"tactic":211},"D3-LFP","Local File Permissions",{"name":207},{"id":213,"name":214,"tactic":215},"D3-RFAM","Remote File Access Mediation",{"name":207},{"id":217,"name":218,"tactic":219},"D3-CQ","Content Quarantine",{"name":207},{"id":221,"name":222,"tactic":223},"D3-CM","Content Modification",{"name":207},{"id":225,"name":226,"tactic":227},"D3-KBPI","Kernel-based Process Isolation",{"name":207},{"id":229,"name":230,"tactic":231},"D3-SCF","System Call Filtering",{"name":207},{"id":233,"name":234,"tactic":235},"D3-HBPI","Hardware-based Process Isolation",{"name":207},{"id":237,"name":238,"tactic":239},"D3-ABPI","Application-based Process Isolation",{"name":207},{"id":241,"name":242,"tactic":243},"D3-WSAM","Web Session Access Mediation",{"name":207},[],[],[],[248,250,252,254,256,258,260,262,264,266,268,270,272,274,276,278,280,282,284,286,288,290,292,294,296,298,300,302],{"_key":249},"SUSE-SU-2019:2871-1",{"_key":251},"RHSA-2019:3281",{"_key":253},"OPENSUSE-SU-2024:10601-1",{"_key":255},"SUSE-SU-2019:14246-1",{"_key":257},"SUSE-SU-2019:2872-1",{"_key":259},"SUSE-SU-2019:2912-1",{"_key":261},"OPENSUSE-SU-2019:2451-1",{"_key":263},"OPENSUSE-SU-2019:2452-1",{"_key":265},"OPENSUSE-SU-2019:2459-1",{"_key":267},"OPENSUSE-SU-2019:2464-1",{"_key":269},"OPENSUSE-SU-2024:10600-1",{"_key":271},"OPENSUSE-SU-2024:14572-1",{"_key":273},"DLA-1987-1",{"_key":275},"DLA-1997-1",{"_key":277},"DSA-4549-1",{"_key":279},"DSA-4571-1",{"_key":281},"MGASA-2019-0315",{"_key":283},"MGASA-2019-0316",{"_key":285},"UBUNTU-CVE-2019-11761",{"_key":287},"USN-4165-1",{"_key":289},"USN-4202-1",{"_key":291},"USN-4335-1",{"_key":293},"DEBIAN-CVE-2019-11761",{"_key":295},"RHSA-2019:3193",{"_key":297},"RHSA-2019:3196",{"_key":299},"RHSA-2019:3210",{"_key":301},"RHSA-2019:3237",{"_key":303},"RHSA-2019:3756",[],[306,307,308,309,310,311,312,313,314,315,316,317,318],{"_key":249},{"_key":253},{"_key":281},{"_key":255},{"_key":257},{"_key":259},{"_key":261},{"_key":263},{"_key":265},{"_key":267},{"_key":269},{"_key":271},{"_key":283},"2020-01-08T19:52:08.000Z","2024-08-04T23:03:32.758Z","Modified",{"cisa_kev":323,"cisa_ransomware":323,"cisa_vendor":9,"epss_severity":324,"epss_score":325,"severity":326,"severity_score":327,"severity_version":328,"severity_source":329,"severity_vector":330,"severity_status":321},false,"low",0.00414,"medium",5.8,"v2.0","nvd","AV:N/AC:M/Au:N/C:P/I:P/A:N",[332,339,343,347,353,359],{"url":333,"sources":334,"tags":336},"https://www.mozilla.org/security/advisories/mfsa2019-35/",[335,329],"cve.org",[337,338],"X Refsource CONFIRM","Vendor Advisory",{"url":340,"sources":341,"tags":342},"https://www.mozilla.org/security/advisories/mfsa2019-33/",[335,329],[337,338],{"url":344,"sources":345,"tags":346},"https://www.mozilla.org/security/advisories/mfsa2019-34/",[335,329],[337,338],{"url":348,"sources":349,"tags":350},"https://bugzilla.mozilla.org/show_bug.cgi?id=1561502",[335,329],[337,351,352],"Issue Tracking","Permissions Required",{"url":354,"sources":355,"tags":356},"https://security.gentoo.org/glsa/202003-10",[335,329],[338,357,358],"X Refsource GENTOO","Third Party Advisory",{"url":360,"sources":361,"tags":362},"https://usn.ubuntu.com/4335-1/",[335,329],[338,363,358],"X Refsource UBUNTU",[],{"date":366,"score":325,"percentile":367},"2026-06-04",0.61952,[369,373,376,378,381,384,386,389,392,395,398,401,404,407,410,414,417,420,423,426,428,431,434,436,438,441,444,447,450,453,456,459,462,465,468,471,474,477,480,483,486,489,492,494,497,500,503,506,509,512,514,517,520,523,527,530,533,536,539,542,545,547,550,553,556,559,562,565,568,571,574,577,580,583,586,589,592,595,598,601,604,607,610,613,616,618,621,624,627,630],{"date":370,"score":371,"percentile":372},"2025-11-04",0.00442,0.6247,{"date":374,"score":371,"percentile":375},"2025-11-05",0.62459,{"date":377,"score":371,"percentile":372},"2025-11-06",{"date":379,"score":371,"percentile":380},"2025-11-07",0.62485,{"date":382,"score":371,"percentile":383},"2025-11-08",0.62491,{"date":385,"score":371,"percentile":380},"2025-11-09",{"date":387,"score":371,"percentile":388},"2025-11-10",0.62468,{"date":390,"score":371,"percentile":391},"2025-11-11",0.6248,{"date":393,"score":371,"percentile":394},"2025-11-12",0.62503,{"date":396,"score":371,"percentile":397},"2025-11-13",0.62509,{"date":399,"score":371,"percentile":400},"2025-11-14",0.62519,{"date":402,"score":371,"percentile":403},"2025-11-15",0.62511,{"date":405,"score":371,"percentile":406},"2025-11-16",0.62501,{"date":408,"score":371,"percentile":409},"2025-11-17",0.62506,{"date":411,"score":412,"percentile":413},"2025-11-18",0.00338,0.53618,{"date":415,"score":412,"percentile":416},"2025-11-19",0.53633,{"date":418,"score":412,"percentile":419},"2025-11-20",0.53619,{"date":421,"score":371,"percentile":422},"2025-11-21",0.62514,{"date":424,"score":371,"percentile":425},"2025-11-22",0.62524,{"date":427,"score":371,"percentile":406},"2025-11-23",{"date":429,"score":371,"percentile":430},"2025-11-24",0.62496,{"date":432,"score":371,"percentile":433},"2025-11-25",0.625,{"date":435,"score":371,"percentile":394},"2025-11-26",{"date":437,"score":371,"percentile":397},"2025-11-27",{"date":439,"score":371,"percentile":440},"2025-11-28",0.6249,{"date":442,"score":371,"percentile":443},"2025-11-29",0.62464,{"date":445,"score":371,"percentile":446},"2025-11-30",0.62457,{"date":448,"score":371,"percentile":449},"2025-12-01",0.6262,{"date":451,"score":371,"percentile":452},"2025-12-02",0.62637,{"date":454,"score":371,"percentile":455},"2025-12-03",0.62641,{"date":457,"score":371,"percentile":458},"2025-12-04",0.62465,{"date":460,"score":371,"percentile":461},"2025-12-05",0.62476,{"date":463,"score":371,"percentile":464},"2025-12-06",0.62478,{"date":466,"score":371,"percentile":467},"2025-12-07",0.62469,{"date":469,"score":371,"percentile":470},"2025-12-08",0.62477,{"date":472,"score":371,"percentile":473},"2025-12-09",0.62512,{"date":475,"score":371,"percentile":476},"2025-12-10",0.62556,{"date":478,"score":371,"percentile":479},"2025-12-11",0.62572,{"date":481,"score":371,"percentile":482},"2025-12-12",0.62597,{"date":484,"score":371,"percentile":485},"2025-12-13",0.62604,{"date":487,"score":371,"percentile":488},"2025-12-14",0.62603,{"date":490,"score":371,"percentile":491},"2025-12-15",0.6259,{"date":493,"score":371,"percentile":485},"2025-12-16",{"date":495,"score":371,"percentile":496},"2025-12-17",0.62617,{"date":498,"score":371,"percentile":499},"2025-12-18",0.62654,{"date":501,"score":371,"percentile":502},"2025-12-19",0.62668,{"date":504,"score":371,"percentile":505},"2025-12-20",0.6267,{"date":507,"score":371,"percentile":508},"2025-12-21",0.6266,{"date":510,"score":371,"percentile":511},"2025-12-22",0.62651,{"date":513,"score":371,"percentile":502},"2025-12-23",{"date":515,"score":371,"percentile":516},"2025-12-24",0.62675,{"date":518,"score":371,"percentile":519},"2025-12-25",0.62705,{"date":521,"score":371,"percentile":522},"2025-12-26",0.62702,{"date":524,"score":525,"percentile":526},"2025-12-27",0.00473,0.64093,{"date":528,"score":371,"percentile":529},"2025-12-28",0.62681,{"date":531,"score":371,"percentile":532},"2025-12-29",0.62676,{"date":534,"score":371,"percentile":535},"2025-12-30",0.62691,{"date":537,"score":371,"percentile":538},"2025-12-31",0.62712,{"date":540,"score":371,"percentile":541},"2026-01-01",0.62897,{"date":543,"score":371,"percentile":544},"2026-01-02",0.62881,{"date":546,"score":371,"percentile":544},"2026-01-03",{"date":548,"score":371,"percentile":549},"2026-01-04",0.62703,{"date":551,"score":371,"percentile":552},"2026-01-05",0.62699,{"date":554,"score":371,"percentile":555},"2026-01-06",0.62695,{"date":557,"score":371,"percentile":558},"2026-01-07",0.62716,{"date":560,"score":371,"percentile":561},"2026-01-08",0.62739,{"date":563,"score":371,"percentile":564},"2026-01-09",0.62741,{"date":566,"score":371,"percentile":567},"2026-01-10",0.62735,{"date":569,"score":371,"percentile":570},"2026-01-11",0.62722,{"date":572,"score":371,"percentile":573},"2026-01-12",0.627,{"date":575,"score":371,"percentile":576},"2026-01-13",0.62697,{"date":578,"score":371,"percentile":579},"2026-01-14",0.6274,{"date":581,"score":371,"percentile":582},"2026-01-15",0.62756,{"date":584,"score":371,"percentile":585},"2026-01-16",0.62773,{"date":587,"score":371,"percentile":588},"2026-01-17",0.62768,{"date":590,"score":371,"percentile":591},"2026-01-18",0.62765,{"date":593,"score":371,"percentile":594},"2026-01-19",0.62752,{"date":596,"score":371,"percentile":597},"2026-01-20",0.62769,{"date":599,"score":371,"percentile":600},"2026-01-21",0.62771,{"date":602,"score":371,"percentile":603},"2026-01-22",0.62775,{"date":605,"score":371,"percentile":606},"2026-01-23",0.62809,{"date":608,"score":371,"percentile":609},"2026-01-24",0.62815,{"date":611,"score":371,"percentile":612},"2026-01-25",0.6278,{"date":614,"score":371,"percentile":615},"2026-01-26",0.6277,{"date":617,"score":371,"percentile":603},"2026-01-27",{"date":619,"score":371,"percentile":620},"2026-01-28",0.62787,{"date":622,"score":371,"percentile":623},"2026-01-29",0.62782,{"date":625,"score":371,"percentile":626},"2026-01-30",0.62788,{"date":628,"score":371,"percentile":629},"2026-01-31",0.62793,{"date":631,"score":371,"percentile":632},"2026-02-01",0.62932,[634],{"source":329,"cvss_v2_0":635,"cvss_v3_0":9,"cvss_v3_1":638,"cvss_v4_0":9},{"baseScore":327,"baseSeverity":9,"vectorString":330,"impactScore":636,"exploitabilityScore":637},4.9,8.6,{"baseScore":639,"baseSeverity":640,"vectorString":641,"impactScore":642,"exploitabilityScore":643},5.4,"MEDIUM","CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N",4.2,7.2,[645,654,667,674],{"ecosystem":9,"name":646,"vendor":647,"product":648,"cpe_part":649,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":650},"ubuntu linux","canonical","ubuntu_linux","o",[651],{"version":652,"is_range":323,"range_type":653,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"16.04","cpe",{"ecosystem":9,"name":655,"vendor":656,"product":655,"cpe_part":657,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":658},"firefox","mozilla","a",[659,664],{"version":660,"is_range":661,"range_type":653,"version_start":9,"version_start_type":9,"version_end":662,"version_end_type":663,"fixed_in":9},"lt70.0",true,"70.0","excluding",{"version":665,"is_range":661,"range_type":335,"version_start":9,"version_start_type":9,"version_end":666,"version_end_type":663,"fixed_in":9},"lt7.0","70",{"ecosystem":9,"name":668,"vendor":656,"product":669,"cpe_part":657,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":670},"firefox esr","firefox_esr",[671],{"version":672,"is_range":661,"range_type":653,"version_start":9,"version_start_type":9,"version_end":673,"version_end_type":663,"fixed_in":9},"before 68.2","68.2",{"ecosystem":9,"name":675,"vendor":656,"product":676,"cpe_part":657,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":677},"Thunderbird","thunderbird",[678],{"version":672,"is_range":661,"range_type":653,"version_start":9,"version_start_type":9,"version_end":673,"version_end_type":663,"fixed_in":9}]