Mozilla

Firefox ESR

985 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.33%
  • Veröffentlicht 29.09.2026 13:17:41
  • Zuletzt bearbeitet 06.10.2026 14:36:48

Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, and Firefox ESR 140.17.

  • EPSS 0.33%
  • Veröffentlicht 29.09.2026 13:17:41
  • Zuletzt bearbeitet 06.10.2026 14:36:26

Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, and Firefox ESR 140.17.

  • EPSS 0.34%
  • Veröffentlicht 29.09.2026 13:17:41
  • Zuletzt bearbeitet 06.10.2026 14:36:12

Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17.

  • EPSS 0.32%
  • Veröffentlicht 29.09.2026 13:17:40
  • Zuletzt bearbeitet 30.09.2026 20:17:17

Sandbox escape in the DOM: Navigation component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17.

  • EPSS 0.15%
  • Veröffentlicht 29.09.2026 13:17:40
  • Zuletzt bearbeitet 01.10.2026 15:17:18

Sandbox escape in the Security: Process Sandboxing component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.

  • EPSS 0.27%
  • Veröffentlicht 29.09.2026 13:17:40
  • Zuletzt bearbeitet 30.09.2026 18:18:04

Information disclosure in the Networking: JAR component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17.

  • EPSS 0.15%
  • Veröffentlicht 15.09.2026 12:34:41
  • Zuletzt bearbeitet 05.10.2026 19:01:22

Mitigation bypass in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • EPSS 0.14%
  • Veröffentlicht 15.09.2026 12:34:40
  • Zuletzt bearbeitet 05.10.2026 19:01:43

Denial-of-service in the Security component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • EPSS 0.15%
  • Veröffentlicht 15.09.2026 12:34:39
  • Zuletzt bearbeitet 05.10.2026 19:21:22

Denial-of-service in the SVG component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • EPSS 0.15%
  • Veröffentlicht 15.09.2026 12:34:38
  • Zuletzt bearbeitet 05.10.2026 19:31:48

Incorrect boundary conditions in the Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.