CVE-2026-96869
- EPSS 0.21%
- Veröffentlicht 29.09.2026 13:17:53
- Zuletzt bearbeitet 05.10.2026 13:52:00
Information disclosure in the Networking component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, and Firefox ESR 140.17.
CVE-2026-100829
- EPSS 0.15%
- Veröffentlicht 29.09.2026 13:17:48
- Zuletzt bearbeitet 01.10.2026 16:17:30
Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.
CVE-2026-100830
- EPSS 0.15%
- Veröffentlicht 29.09.2026 13:17:48
- Zuletzt bearbeitet 01.10.2026 16:17:30
Mitigation bypass in the DOM: Navigation component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.
CVE-2026-100820
- EPSS 0.25%
- Veröffentlicht 29.09.2026 13:17:47
- Zuletzt bearbeitet 05.10.2026 14:06:39
Privilege escalation in the Address Bar component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, and Firefox ESR 140.17.
CVE-2026-100822
- EPSS 0.24%
- Veröffentlicht 29.09.2026 13:17:47
- Zuletzt bearbeitet 30.09.2026 21:16:54
Spoofing issue in the Networking: HTTP component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.
CVE-2026-100826
- EPSS 0.23%
- Veröffentlicht 29.09.2026 13:17:47
- Zuletzt bearbeitet 30.09.2026 18:18:12
Denial-of-service in the Storage: StorageManager component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.
CVE-2026-100811
- EPSS 0.28%
- Veröffentlicht 29.09.2026 13:17:46
- Zuletzt bearbeitet 05.10.2026 17:02:02
Sandbox escape due to use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, and Firefox ESR 140.17.
CVE-2026-100815
- EPSS 0.25%
- Veröffentlicht 29.09.2026 13:17:46
- Zuletzt bearbeitet 05.10.2026 17:00:24
Use-after-free in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.
CVE-2026-100816
- EPSS 0.15%
- Veröffentlicht 29.09.2026 13:17:46
- Zuletzt bearbeitet 05.10.2026 16:59:58
Site isolation issue in the DOM: Networking component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.
CVE-2026-100800
- EPSS 0.31%
- Veröffentlicht 29.09.2026 13:17:45
- Zuletzt bearbeitet 30.09.2026 18:18:09
Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.