CVE-2026-2765
- EPSS 0.02%
- Veröffentlicht 24.02.2026 13:33:03
- Zuletzt bearbeitet 13.04.2026 15:17:21
Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
CVE-2026-2763
- EPSS 0.02%
- Veröffentlicht 24.02.2026 13:33:02
- Zuletzt bearbeitet 13.04.2026 15:17:21
Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
- EPSS 0.15%
- Veröffentlicht 24.02.2026 13:33:01
- Zuletzt bearbeitet 13.04.2026 15:17:21
Sandbox escape in the Graphics: WebRender component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
CVE-2026-2762
- EPSS 0.02%
- Veröffentlicht 24.02.2026 13:33:01
- Zuletzt bearbeitet 13.04.2026 15:17:21
Integer overflow in the JavaScript: Standard Library component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
- EPSS 0.08%
- Veröffentlicht 24.02.2026 13:33:00
- Zuletzt bearbeitet 13.04.2026 15:17:20
Sandbox escape due to incorrect boundary conditions in the Graphics: WebRender component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
CVE-2026-2759
- EPSS 0.07%
- Veröffentlicht 24.02.2026 13:32:59
- Zuletzt bearbeitet 13.04.2026 15:17:20
Incorrect boundary conditions in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
CVE-2026-2758
- EPSS 0.07%
- Veröffentlicht 24.02.2026 13:32:58
- Zuletzt bearbeitet 13.04.2026 15:17:20
Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
CVE-2026-2757
- EPSS 0.07%
- Veröffentlicht 24.02.2026 13:32:57
- Zuletzt bearbeitet 13.04.2026 15:17:20
Incorrect boundary conditions in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
CVE-2026-2447
- EPSS 0.02%
- Veröffentlicht 16.02.2026 14:13:23
- Zuletzt bearbeitet 13.04.2026 15:17:19
Heap buffer overflow in libvpx. This vulnerability was fixed in Firefox 147.0.4, Firefox ESR 140.7.1, Firefox ESR 115.32.1, Thunderbird 140.7.2, and Thunderbird 147.0.2.
CVE-2026-0818
- EPSS 0.01%
- Veröffentlicht 28.01.2026 07:39:17
- Zuletzt bearbeitet 13.04.2026 15:17:15
When a user explicitly requested Thunderbird to decrypt an inline OpenPGP message that was embedded in a text section of an email that was formatted and styled with HTML and CSS, then the decrypted contents were rendered in a context in which the CSS...