CVE-2026-84120
- EPSS 0.22%
- Veröffentlicht 01.09.2026 12:18:40
- Zuletzt bearbeitet 02.09.2026 16:41:18
Use-after-free in the Audio/Video component. This vulnerability was fixed in Firefox 155, Firefox ESR 115.40, Firefox ESR 140.15, Firefox ESR 153.2, Thunderbird 155, Thunderbird 140.15, and Thunderbird 153.2.
CVE-2026-84119
- EPSS 0.32%
- Veröffentlicht 01.09.2026 12:18:39
- Zuletzt bearbeitet 02.09.2026 16:41:53
Sandbox escape due to use-after-free in the DOM: Navigation component. This vulnerability was fixed in Firefox 155, Firefox ESR 115.40, Firefox ESR 140.15, Firefox ESR 153.2, Thunderbird 155, Thunderbird 140.15, and Thunderbird 153.2.
CVE-2026-74985
- EPSS 0.15%
- Veröffentlicht 18.08.2026 12:23:41
- Zuletzt bearbeitet 25.08.2026 15:39:27
Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVE-2026-74986
- EPSS 0.15%
- Veröffentlicht 18.08.2026 12:23:41
- Zuletzt bearbeitet 25.08.2026 16:11:58
Site isolation issue in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVE-2026-74988
- EPSS 0.15%
- Veröffentlicht 18.08.2026 12:23:41
- Zuletzt bearbeitet 01.09.2026 22:17:12
Internally found bugs present in Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. Th...
CVE-2026-74989
- EPSS 0.15%
- Veröffentlicht 18.08.2026 12:23:41
- Zuletzt bearbeitet 01.09.2026 22:17:12
Internally found bugs present in Thunderbird 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. This vulnerability was fixed...
CVE-2026-74980
- EPSS 0.14%
- Veröffentlicht 18.08.2026 12:23:40
- Zuletzt bearbeitet 25.08.2026 15:40:41
Clickjacking issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Firefox 154.
CVE-2026-74981
- EPSS 0.15%
- Veröffentlicht 18.08.2026 12:23:40
- Zuletzt bearbeitet 25.08.2026 16:11:37
Site isolation issue in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVE-2026-74982
- EPSS 0.15%
- Veröffentlicht 18.08.2026 12:23:40
- Zuletzt bearbeitet 25.08.2026 16:11:04
Denial-of-service in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVE-2026-74984
- EPSS 0.15%
- Veröffentlicht 18.08.2026 12:23:40
- Zuletzt bearbeitet 25.08.2026 16:11:22
Race condition in the JavaScript Engine component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.