CVE-2026-74938
- EPSS 0.32%
- Veröffentlicht 18.08.2026 12:23:35
- Zuletzt bearbeitet 19.08.2026 00:58:44
Mitigation bypass in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVE-2026-74974
- EPSS 0.15%
- Veröffentlicht 18.08.2026 12:23:34
- Zuletzt bearbeitet 19.08.2026 17:05:24
Same-origin policy bypass in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
CVE-2026-74976
- EPSS 0.16%
- Veröffentlicht 18.08.2026 12:23:34
- Zuletzt bearbeitet 19.08.2026 15:24:04
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
CVE-2026-74983
- EPSS 0.17%
- Veröffentlicht 18.08.2026 12:23:34
- Zuletzt bearbeitet 19.08.2026 15:47:50
Mitigation bypass in the Data Loss Prevention component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
CVE-2026-74987
- EPSS 0.18%
- Veröffentlicht 18.08.2026 12:23:34
- Zuletzt bearbeitet 19.08.2026 15:19:36
Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could...
CVE-2026-74969
- EPSS 0.16%
- Veröffentlicht 18.08.2026 12:23:33
- Zuletzt bearbeitet 19.08.2026 17:21:12
Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
CVE-2026-74971
- EPSS 0.28%
- Veröffentlicht 18.08.2026 12:23:33
- Zuletzt bearbeitet 19.08.2026 17:10:41
Information disclosure in the DOM: UI Events & Focus Handling component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
CVE-2026-74972
- EPSS 0.28%
- Veröffentlicht 18.08.2026 12:23:33
- Zuletzt bearbeitet 19.08.2026 17:10:02
Information disclosure in the DOM: Push Subscriptions component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
CVE-2026-74973
- EPSS 0.19%
- Veröffentlicht 18.08.2026 12:23:33
- Zuletzt bearbeitet 19.08.2026 17:08:35
Race condition, use-after-free in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
CVE-2026-74963
- EPSS 0.12%
- Veröffentlicht 18.08.2026 12:23:32
- Zuletzt bearbeitet 19.08.2026 01:00:22
Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.