← All credits

Masato Kinugawa

29 vulnerability records and advisories credit this contributor.

RHSA-2014:0132
Red Hat Security Advisory: firefox security update
RHSA-2013:1823
Red Hat Security Advisory: thunderbird security update
RHSA-2013:1812
Red Hat Security Advisory: firefox security update
CVE-2026-24868
Mitigation bypass in the Privacy: Anti-Tracking component
CVE-2025-13013
Mitigation bypass in the DOM: Core & HTML component
CVE-2025-11712
An OBJECT tag type attribute overrode browser behavior on web resources without a content-type
CVE-2024-9394
An attacker could, via a specially crafted multipart response, execute arbitrary JavaScript under the `resource://devtools` origin. This could allow them to access cross-origin JSON content. This access is limited to "same site" documents by the Site Iso
CVE-2024-9393
An attacker could, via a specially crafted multipart response, execute arbitrary JavaScript under the `resource://pdf.js` origin. This could allow them to access cross-origin PDF content. This access is limited to "same site" documents by the Site Isolat
CVE-2024-7524
Firefox adds web-compatibility shims in place of some tracking scripts blocked by Enhanced Tracking Protection. On a site protected by Content Security Policy in "strict-dynamic" mode, an attacker able to inject an HTML element could have used a DOM Clob
CVE-2024-11694
Enhanced Tracking Protection's Strict mode may have inadvertently allowed a CSP `frame-src` bypass and DOM-based XSS through the Google SafeFrame shim in the Web Compatibility extension. This issue could have exposed users to malicious frames masquerading