CVE-2016-2812: Mozilla Firefox
High severity, CVSS 7.5. EPSS: 2.4% chance of exploitation in the next 30 days.
Race condition in the get implementation in the ServiceWorkerManager class in the Service Worker subsystem in Mozilla Firefox before 46.0 allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow and application crash) via a crafted web site.
Affected products
- Mozilla Firefox: up to and including 45.0.2
Published 2016-04-30. Last modified 2026-06-17.