CVE-2018-18500 is a critical use-after-free vulnerability affecting Mozilla Firefox, Firefox ESR, and Thunderbird versions prior to 65 and 60.5 respectively. This flaw occurs when parsing an HTML5 stream with custom HTML elements, leading to a potentially exploitable crash due to the stream parser object being freed prematurely. With a CVSS score of 9.8 (CRITICAL), it presents a high risk of complete compromise (confidentiality, integrity, availability) without user interaction, although its EPSS and FAUCET scores indicate a moderate likelihood of exploitation. Currently, there is no evidence of active exploitation, nor are there public exploit modules available in Metasploit, Nuclei, or ExploitDB, and it is not listed on CISA's KEV catalog. Community discussion and media coverage are minimal, suggesting limited public awareness or active threat intelligence surrounding this specific vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 65.0CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:* | ||
< 60.5CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox_esr:*:*:*:*:*:*:*:* | ||
< 60.5CPE matchmatch criteria | cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:* | ||
14.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:* | ||
16.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.