CVE-2026-74966
- EPSS 0.14%
- Veröffentlicht 18.08.2026 12:23:38
- Zuletzt bearbeitet 20.08.2026 18:16:49
Information disclosure in the Form Autofill component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVE-2026-74968
- EPSS 0.11%
- Veröffentlicht 18.08.2026 12:23:38
- Zuletzt bearbeitet 20.08.2026 20:08:54
Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVE-2026-74970
- EPSS 0.17%
- Veröffentlicht 18.08.2026 12:23:38
- Zuletzt bearbeitet 18.08.2026 19:17:13
Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVE-2026-74954
- EPSS 0.26%
- Veröffentlicht 18.08.2026 12:23:37
- Zuletzt bearbeitet 19.08.2026 00:59:24
Information disclosure due to side-channel in the Storage: Cache API component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVE-2026-74955
- EPSS 0.22%
- Veröffentlicht 18.08.2026 12:23:37
- Zuletzt bearbeitet 21.08.2026 04:18:18
Privilege escalation in the Request Handling component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVE-2026-74956
- EPSS 0.28%
- Veröffentlicht 18.08.2026 12:23:37
- Zuletzt bearbeitet 19.08.2026 01:00:02
Same-origin policy bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVE-2026-74958
- EPSS 0.26%
- Veröffentlicht 18.08.2026 12:23:37
- Zuletzt bearbeitet 19.08.2026 01:00:14
Information disclosure in the WebRTC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVE-2026-74947
- EPSS 0.24%
- Veröffentlicht 18.08.2026 12:23:36
- Zuletzt bearbeitet 21.08.2026 04:18:17
Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVE-2026-74950
- EPSS 0.22%
- Veröffentlicht 18.08.2026 12:23:36
- Zuletzt bearbeitet 21.08.2026 04:18:17
Privilege escalation in the Downloads API component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVE-2026-74937
- EPSS 0.29%
- Veröffentlicht 18.08.2026 12:23:35
- Zuletzt bearbeitet 19.08.2026 00:58:37
Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.