[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2020-12405":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T14:55:33.319Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":36,"aliases":46,"duplicate_of":9,"upstream":47,"downstream":48,"duplicates":107,"related":108,"reserved_at":9,"published_at":120,"modified_at":121,"state":122,"summary":123,"references_raw":131,"kevs":158,"epss":159,"epss_history":162,"metrics":423,"affected":434},"CVE-2020-12405","When browsing a malicious page, a race condition in our SharedWorkerService could occur and lead to a potentially exploitable crash. This vulnerability affects Thunderbird \u003C 68.9.0, Firefox \u003C 77, and Firefox ESR \u003C 68.9.",null,[11,28],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-362","Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')","The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.","weakness","Draft","Class","Medium",[20,24],{"id":21,"name":22,"techniques":23},"CAPEC-26","Leveraging Race Conditions",[],{"id":25,"name":26,"techniques":27},"CAPEC-29","Leveraging Time-of-Check and Time-of-Use (TOCTOU) Race Conditions",[],{"_key":29,"id":29,"name":30,"description":31,"type":15,"status":32,"abstraction":33,"likelihood_of_exploit":34,"capec":35},"CWE-416","Use After Free","The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory \"belongs\" to the code that operates on the new pointer.","Stable","Variant","High",[],[37],{"_key":38,"name":39,"source":40,"url":41,"maturity":42,"reliability_score":43,"verified":44,"type":9,"platforms":45,"requires_auth":9,"exploitdb":9,"metasploit":9},"REF_D2EE062487BFF266","Exploit Reference (bugzilla.mozilla.org)","reference","https://bugzilla.mozilla.org/show_bug.cgi?id=1631618","unknown",0.2,false,[],[],[],[49,51,53,55,57,59,61,63,65,67,69,71,73,75,77,79,81,83,85,87,89,91,93,95,97,99,101,103,105],{"_key":50},"SUSE-SU-2020:14389-1",{"_key":52},"RHSA-2020:2378",{"_key":54},"RHSA-2020:2379",{"_key":56},"RHSA-2020:2380",{"_key":58},"RHSA-2020:2381",{"_key":60},"RHSA-2020:2382",{"_key":62},"RHSA-2020:2611",{"_key":64},"RHSA-2020:2613",{"_key":66},"RHSA-2020:2614",{"_key":68},"RHSA-2020:2615",{"_key":70},"RHSA-2020:2616",{"_key":72},"OPENSUSE-SU-2024:10601-1",{"_key":74},"SUSE-SU-2020:1556-1",{"_key":76},"SUSE-SU-2020:1563-1",{"_key":78},"SUSE-SU-2020:1591-1",{"_key":80},"SUSE-SU-2020:1591-2",{"_key":82},"OPENSUSE-SU-2020:0789-1",{"_key":84},"OPENSUSE-SU-2020:0799-1",{"_key":86},"OPENSUSE-SU-2024:10600-1",{"_key":88},"OPENSUSE-SU-2024:14572-1",{"_key":90},"DLA-2243-1",{"_key":92},"DLA-2247-1",{"_key":94},"DSA-4695-1",{"_key":96},"DSA-4702-1",{"_key":98},"MGASA-2020-0300",{"_key":100},"UBUNTU-CVE-2020-12405",{"_key":102},"USN-4383-1",{"_key":104},"USN-4421-1",{"_key":106},"DEBIAN-CVE-2020-12405",[],[109,110,111,112,113,114,115,116,117,118,119],{"_key":50},{"_key":72},{"_key":74},{"_key":76},{"_key":78},{"_key":80},{"_key":82},{"_key":84},{"_key":86},{"_key":88},{"_key":98},"2020-07-09T14:45:23.000Z","2024-08-04T11:56:51.680Z","Modified",{"cisa_kev":44,"cisa_ransomware":44,"cisa_vendor":9,"epss_severity":124,"epss_score":125,"severity":126,"severity_score":127,"severity_version":128,"severity_source":129,"severity_vector":130,"severity_status":122},"low",0.00537,"medium",5.3,"v3.1","nvd","CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:H",[132,139,143,147,152],{"url":133,"sources":134,"tags":136},"https://www.mozilla.org/security/advisories/mfsa2020-20/",[135,129],"cve.org",[137,138],"X Refsource MISC","Vendor Advisory",{"url":140,"sources":141,"tags":142},"https://www.mozilla.org/security/advisories/mfsa2020-21/",[135,129],[137,138],{"url":144,"sources":145,"tags":146},"https://www.mozilla.org/security/advisories/mfsa2020-22/",[135,129],[137,138],{"url":41,"sources":148,"tags":149},[135,129],[137,150,151,138],"Exploit","Issue Tracking",{"url":153,"sources":154,"tags":155},"https://usn.ubuntu.com/4421-1/",[135,129],[138,156,157],"X Refsource UBUNTU","Third Party Advisory",[],{"date":160,"score":125,"percentile":161},"2026-06-04",0.6787,[163,167,170,173,176,178,181,184,187,190,193,196,198,201,204,208,211,214,217,220,223,225,228,230,233,236,239,241,244,247,250,253,256,259,261,264,267,270,273,276,279,281,284,287,290,293,296,299,302,305,308,311,314,317,321,324,327,330,333,336,339,341,344,346,348,351,354,357,359,362,365,368,371,374,377,380,383,386,388,391,393,396,399,402,405,408,411,414,417,420],{"date":164,"score":165,"percentile":166},"2025-11-04",0.00664,0.70409,{"date":168,"score":165,"percentile":169},"2025-11-05",0.70394,{"date":171,"score":165,"percentile":172},"2025-11-06",0.70392,{"date":174,"score":165,"percentile":175},"2025-11-07",0.70407,{"date":177,"score":165,"percentile":166},"2025-11-08",{"date":179,"score":165,"percentile":180},"2025-11-09",0.70401,{"date":182,"score":165,"percentile":183},"2025-11-10",0.70386,{"date":185,"score":165,"percentile":186},"2025-11-11",0.70396,{"date":188,"score":165,"percentile":189},"2025-11-12",0.70418,{"date":191,"score":165,"percentile":192},"2025-11-13",0.70425,{"date":194,"score":165,"percentile":195},"2025-11-14",0.70433,{"date":197,"score":165,"percentile":195},"2025-11-15",{"date":199,"score":165,"percentile":200},"2025-11-16",0.70429,{"date":202,"score":165,"percentile":203},"2025-11-17",0.70426,{"date":205,"score":206,"percentile":207},"2025-11-18",0.00422,0.59345,{"date":209,"score":206,"percentile":210},"2025-11-19",0.59358,{"date":212,"score":206,"percentile":213},"2025-11-20",0.59348,{"date":215,"score":165,"percentile":216},"2025-11-21",0.70446,{"date":218,"score":165,"percentile":219},"2025-11-22",0.70436,{"date":221,"score":165,"percentile":222},"2025-11-23",0.70417,{"date":224,"score":165,"percentile":166},"2025-11-24",{"date":226,"score":165,"percentile":227},"2025-11-25",0.70412,{"date":229,"score":165,"percentile":189},"2025-11-26",{"date":231,"score":165,"percentile":232},"2025-11-27",0.70416,{"date":234,"score":165,"percentile":235},"2025-11-28",0.70405,{"date":237,"score":165,"percentile":238},"2025-11-29",0.70393,{"date":240,"score":165,"percentile":183},"2025-11-30",{"date":242,"score":165,"percentile":243},"2025-12-01",0.70528,{"date":245,"score":165,"percentile":246},"2025-12-02",0.7054,{"date":248,"score":165,"percentile":249},"2025-12-03",0.70537,{"date":251,"score":165,"percentile":252},"2025-12-04",0.7039,{"date":254,"score":165,"percentile":255},"2025-12-05",0.70403,{"date":257,"score":165,"percentile":258},"2025-12-06",0.70406,{"date":260,"score":165,"percentile":235},"2025-12-07",{"date":262,"score":165,"percentile":263},"2025-12-08",0.7041,{"date":265,"score":165,"percentile":266},"2025-12-09",0.70441,{"date":268,"score":165,"percentile":269},"2025-12-10",0.70478,{"date":271,"score":165,"percentile":272},"2025-12-11",0.705,{"date":274,"score":165,"percentile":275},"2025-12-12",0.70526,{"date":277,"score":165,"percentile":278},"2025-12-13",0.70527,{"date":280,"score":165,"percentile":275},"2025-12-14",{"date":282,"score":165,"percentile":283},"2025-12-15",0.70521,{"date":285,"score":165,"percentile":286},"2025-12-16",0.70529,{"date":288,"score":165,"percentile":289},"2025-12-17",0.70544,{"date":291,"score":165,"percentile":292},"2025-12-18",0.70569,{"date":294,"score":165,"percentile":295},"2025-12-19",0.70584,{"date":297,"score":165,"percentile":298},"2025-12-20",0.70583,{"date":300,"score":165,"percentile":301},"2025-12-21",0.70574,{"date":303,"score":165,"percentile":304},"2025-12-22",0.70573,{"date":306,"score":165,"percentile":307},"2025-12-23",0.70572,{"date":309,"score":165,"percentile":310},"2025-12-24",0.70581,{"date":312,"score":165,"percentile":313},"2025-12-25",0.70604,{"date":315,"score":165,"percentile":316},"2025-12-26",0.70605,{"date":318,"score":319,"percentile":320},"2025-12-27",0.00639,0.69955,{"date":322,"score":165,"percentile":323},"2025-12-28",0.70575,{"date":325,"score":165,"percentile":326},"2025-12-29",0.70571,{"date":328,"score":165,"percentile":329},"2025-12-30",0.70585,{"date":331,"score":165,"percentile":332},"2025-12-31",0.70606,{"date":334,"score":165,"percentile":335},"2026-01-01",0.70761,{"date":337,"score":165,"percentile":338},"2026-01-02",0.70755,{"date":340,"score":165,"percentile":338},"2026-01-03",{"date":342,"score":165,"percentile":343},"2026-01-04",0.70609,{"date":345,"score":165,"percentile":313},"2026-01-05",{"date":347,"score":165,"percentile":343},"2026-01-06",{"date":349,"score":165,"percentile":350},"2026-01-07",0.70625,{"date":352,"score":165,"percentile":353},"2026-01-08",0.70643,{"date":355,"score":165,"percentile":356},"2026-01-09",0.7065,{"date":358,"score":165,"percentile":356},"2026-01-10",{"date":360,"score":165,"percentile":361},"2026-01-11",0.70644,{"date":363,"score":165,"percentile":364},"2026-01-12",0.70633,{"date":366,"score":165,"percentile":367},"2026-01-13",0.7063,{"date":369,"score":165,"percentile":370},"2026-01-14",0.70656,{"date":372,"score":165,"percentile":373},"2026-01-15",0.70662,{"date":375,"score":165,"percentile":376},"2026-01-16",0.70679,{"date":378,"score":165,"percentile":379},"2026-01-17",0.70673,{"date":381,"score":165,"percentile":382},"2026-01-18",0.70654,{"date":384,"score":165,"percentile":385},"2026-01-19",0.70647,{"date":387,"score":165,"percentile":370},"2026-01-20",{"date":389,"score":165,"percentile":390},"2026-01-21",0.7066,{"date":392,"score":165,"percentile":379},"2026-01-22",{"date":394,"score":165,"percentile":395},"2026-01-23",0.70706,{"date":397,"score":165,"percentile":398},"2026-01-24",0.70711,{"date":400,"score":165,"percentile":401},"2026-01-25",0.70685,{"date":403,"score":165,"percentile":404},"2026-01-26",0.7068,{"date":406,"score":165,"percentile":407},"2026-01-27",0.70682,{"date":409,"score":165,"percentile":410},"2026-01-28",0.70697,{"date":412,"score":165,"percentile":413},"2026-01-29",0.70695,{"date":415,"score":165,"percentile":416},"2026-01-30",0.70704,{"date":418,"score":165,"percentile":419},"2026-01-31",0.70709,{"date":421,"score":165,"percentile":422},"2026-02-01",0.70838,[424],{"source":129,"cvss_v2_0":425,"cvss_v3_0":9,"cvss_v3_1":430,"cvss_v4_0":9},{"baseScore":426,"baseSeverity":9,"vectorString":427,"impactScore":428,"exploitabilityScore":429},2.6,"AV:N/AC:H/Au:N/C:N/I:N/A:P",2.9,4.9,{"baseScore":127,"baseSeverity":431,"vectorString":130,"impactScore":432,"exploitabilityScore":433},"MEDIUM",6,4.1,[435,450,466,476],{"ecosystem":9,"name":436,"vendor":437,"product":438,"cpe_part":439,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":440},"ubuntu linux","canonical","ubuntu_linux","o",[441,444,446,448],{"version":442,"is_range":44,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"16.04","cpe",{"version":445,"is_range":44,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"18.04",{"version":447,"is_range":44,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"19.10",{"version":449,"is_range":44,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"20.04",{"ecosystem":9,"name":451,"vendor":452,"product":453,"cpe_part":454,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":455},"Firefox","mozilla","firefox","a",[456,461],{"version":457,"is_range":458,"range_type":443,"version_start":9,"version_start_type":9,"version_end":459,"version_end_type":460,"fixed_in":9},"lt77.0",true,"77.0","excluding",{"version":462,"is_range":458,"range_type":135,"version_start":463,"version_start_type":464,"version_end":465,"version_end_type":460,"fixed_in":9},">= unspecified, \u003C 77","unspecified","including","77",{"ecosystem":9,"name":467,"vendor":452,"product":468,"cpe_part":454,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":469},"firefox esr","firefox_esr",[470,473],{"version":471,"is_range":458,"range_type":443,"version_start":9,"version_start_type":9,"version_end":472,"version_end_type":460,"fixed_in":9},"lt68.9.0","68.9.0",{"version":474,"is_range":458,"range_type":135,"version_start":463,"version_start_type":464,"version_end":475,"version_end_type":460,"fixed_in":9},">= unspecified, \u003C 68.9","68.9",{"ecosystem":9,"name":477,"vendor":452,"product":478,"cpe_part":454,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":479},"Thunderbird","thunderbird",[480,481],{"version":471,"is_range":458,"range_type":443,"version_start":9,"version_start_type":9,"version_end":472,"version_end_type":460,"fixed_in":9},{"version":482,"is_range":458,"range_type":135,"version_start":463,"version_start_type":464,"version_end":472,"version_end_type":460,"fixed_in":9},">= unspecified, \u003C 68.9.0"]