CVE-2026-100761
- EPSS 0.24%
- Veröffentlicht 29.09.2026 13:17:40
- Zuletzt bearbeitet 30.09.2026 18:18:03
Privilege escalation due to use-after-free in the Graphics: WebGPU component. This vulnerability was fixed in Thunderbird 157 and Firefox 157.
CVE-2026-100762
- EPSS 0.34%
- Veröffentlicht 29.09.2026 13:17:40
- Zuletzt bearbeitet 30.09.2026 18:18:03
Sandbox escape due to use-after-free in the DOM: Content Processes component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17.
CVE-2026-100763
- EPSS 0.15%
- Veröffentlicht 29.09.2026 13:17:40
- Zuletzt bearbeitet 01.10.2026 15:17:18
Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Thunderbird 157 and Firefox 157.
CVE-2026-100764
- EPSS 0.25%
- Veröffentlicht 29.09.2026 13:17:40
- Zuletzt bearbeitet 30.09.2026 18:18:03
Privilege escalation due to incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Thunderbird 157 and Firefox 157.
CVE-2026-100765
- EPSS 0.31%
- Veröffentlicht 29.09.2026 13:17:40
- Zuletzt bearbeitet 30.09.2026 18:18:03
Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.
CVE-2026-100766
- EPSS 0.27%
- Veröffentlicht 29.09.2026 13:17:40
- Zuletzt bearbeitet 30.09.2026 18:18:04
Information disclosure in the Networking: JAR component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17.
CVE-2026-100767
- EPSS 0.34%
- Veröffentlicht 29.09.2026 13:17:40
- Zuletzt bearbeitet 06.10.2026 14:37:11
Use-after-free in the Networking: Cache component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17.
CVE-2026-100756
- EPSS 0.33%
- Veröffentlicht 29.09.2026 13:17:39
- Zuletzt bearbeitet 06.10.2026 14:37:17
Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17.
CVE-2026-92079
- EPSS 0.15%
- Veröffentlicht 15.09.2026 12:34:41
- Zuletzt bearbeitet 05.10.2026 19:01:22
Mitigation bypass in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
CVE-2026-92078
- EPSS 0.14%
- Veröffentlicht 15.09.2026 12:34:40
- Zuletzt bearbeitet 05.10.2026 19:01:43
Denial-of-service in the Security component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.