CVE-2026-2777
- EPSS 0.37%
- Veröffentlicht 24.02.2026 13:33:12
- Zuletzt bearbeitet 15.07.2026 02:19:40
Privilege escalation in the Messaging System component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
CVE-2026-2775
- EPSS 0.55%
- Veröffentlicht 24.02.2026 13:33:11
- Zuletzt bearbeitet 15.07.2026 02:19:39
Mitigation bypass in the DOM: HTML Parser component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
CVE-2026-2773
- EPSS 0.6%
- Veröffentlicht 24.02.2026 13:33:10
- Zuletzt bearbeitet 15.07.2026 02:19:39
Incorrect boundary conditions in the Web Audio component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
CVE-2026-2774
- EPSS 0.54%
- Veröffentlicht 24.02.2026 13:33:10
- Zuletzt bearbeitet 15.07.2026 02:19:39
Integer overflow in the Audio/Video component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
CVE-2026-2772
- EPSS 0.47%
- Veröffentlicht 24.02.2026 13:33:09
- Zuletzt bearbeitet 15.07.2026 02:19:38
Use-after-free in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
CVE-2026-2771
- EPSS 0.48%
- Veröffentlicht 24.02.2026 13:33:08
- Zuletzt bearbeitet 21.09.2026 20:17:24
Undefined behavior in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
CVE-2026-2770
- EPSS 0.47%
- Veröffentlicht 24.02.2026 13:33:07
- Zuletzt bearbeitet 15.07.2026 02:19:37
Use-after-free in the DOM: Bindings (WebIDL) component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
- EPSS 0.37%
- Veröffentlicht 24.02.2026 13:33:06
- Zuletzt bearbeitet 15.07.2026 02:19:37
Sandbox escape in the Storage: IndexedDB component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
CVE-2026-2769
- EPSS 0.42%
- Veröffentlicht 24.02.2026 13:33:06
- Zuletzt bearbeitet 15.07.2026 02:19:37
Use-after-free in the Storage: IndexedDB component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
CVE-2026-2767
- EPSS 0.38%
- Veröffentlicht 24.02.2026 13:33:05
- Zuletzt bearbeitet 15.07.2026 02:19:36
Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.