- EPSS 0.14%
- Veröffentlicht 06.10.2026 12:30:49
- Zuletzt bearbeitet 06.10.2026 16:00:36
Mitigation bypass in the File Handling component. This vulnerability was fixed in Firefox 157.0.1.
CVE-2026-96869
- EPSS 0.21%
- Veröffentlicht 29.09.2026 13:17:53
- Zuletzt bearbeitet 05.10.2026 13:52:00
Information disclosure in the Networking component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, and Firefox ESR 140.17.
CVE-2026-100832
- EPSS 0.26%
- Veröffentlicht 29.09.2026 13:17:48
- Zuletzt bearbeitet 05.10.2026 14:06:13
Use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 140.17, Thunderbird 153.4, Firefox ESR 115.42, and Firefox ESR 140.17.
CVE-2026-100831
- EPSS 0.25%
- Veröffentlicht 29.09.2026 13:17:48
- Zuletzt bearbeitet 30.09.2026 18:18:13
Use-after-free in the DOM: UI Events & Focus Handling component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.
CVE-2026-100830
- EPSS 0.15%
- Veröffentlicht 29.09.2026 13:17:48
- Zuletzt bearbeitet 01.10.2026 16:17:30
Mitigation bypass in the DOM: Navigation component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.
CVE-2026-100829
- EPSS 0.15%
- Veröffentlicht 29.09.2026 13:17:48
- Zuletzt bearbeitet 01.10.2026 16:17:30
Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.
CVE-2026-100828
- EPSS 0.15%
- Veröffentlicht 29.09.2026 13:17:48
- Zuletzt bearbeitet 01.10.2026 16:17:30
Mitigation bypass in the Bookmarks & History component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.
CVE-2026-100826
- EPSS 0.23%
- Veröffentlicht 29.09.2026 13:17:47
- Zuletzt bearbeitet 30.09.2026 18:18:12
Denial-of-service in the Storage: StorageManager component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.
CVE-2026-100825
- EPSS 0.25%
- Veröffentlicht 29.09.2026 13:17:47
- Zuletzt bearbeitet 30.09.2026 18:18:12
Use-after-free in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.
CVE-2026-100824
- EPSS 0.24%
- Veröffentlicht 29.09.2026 13:17:47
- Zuletzt bearbeitet 30.09.2026 18:18:12
Privilege escalation in the Places component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.