AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2013-1690

HIGH · CVSS 8.8 EPSS 69.02% CISA KEV · Actively Exploited

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2013-06-26 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CISA KEV Details

Status: This CVE is listed in CISA's Known Exploited Vulnerabilities catalog.

Ransomware use: Unknown

Added to KEV: 2022-03-28

Required action: Apply updates per vendor instructions.

CVE
CVE-2013-1690
Severity
HIGH
CVSS
8.8
EPSS
69.02%
Firefox

Original NVD Description

Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 do not properly handle onreadystatechange events in conjunction with page reloading, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted web site that triggers an attempt to execute data at an unmapped memory location.