Vulnerability index

Browse CVEs

392 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.6 CVE-2026-12296 Sandbox escape in the Security: Process Sandboxing component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and T… Firefox 140.12.0 / 152.0.0+ Fix from $2,3002026-06-16 CRITICAL 9.6 CVE-2026-12297 Sandbox escape due to incorrect boundary conditions in the Networking component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Fir… Firefox 115.37.0 / 140.12.0+ Fix from $2,3002026-06-16 CRITICAL 9.6 CVE-2026-8959 Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, … Firefox 140.11 / 140.11.0+ Fix from $2,3002026-05-19 CRITICAL 9.8 CVE-2026-8956 Integer overflow in the Networking: JAR component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird … Firefox 140.11 / 140.11.0+ Fix from $2,3002026-05-19 CRITICAL 9.6 CVE-2026-8953 Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefo… Firefox 115.36.0 / 140.11+ Fix from $2,3002026-05-19 CRITICAL 9.3 CVE-2026-8950 Same-origin policy bypass in the Networking: HTTP component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Th… Firefox 140.11 / 140.11.0+ Fix from $2,3002026-05-19 CRITICAL 9.1 CVE-2026-8948 Same-origin policy bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. Firefox 151.0.0+ Fix from $2,3002026-05-19 CRITICAL 9.8 CVE-2026-8401 Sandbox escape in the Profile Backup component. This vulnerability was fixed in Firefox 150.0.3, Firefox ESR 115.36, Firefox ESR 140.11, and Thunderb… Firefox 150.0.3+ Fix from $2,3002026-05-12 CRITICAL 9.9 CVE-2026-41512 ai-scanner is an AI model safety scanner built on NVIDIA garak. From version 1.0.0 to before version 1.4.1, there is a remote code execution vulnerab… 0din Scanner 1.4.1+ Fix from $2,3002026-05-08 CRITICAL 9.8 CVE-2026-8091 Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150, Thunderbird 150, Firefox ESR 140.1… Firefox 115.35.2 / 140.10.1+ Fix from $2,3002026-05-07 CRITICAL 9.8 CVE-2026-8094 Other issue in the WebRTC component. This vulnerability was fixed in Firefox ESR 140.10.2 and Thunderbird 140.10.2. Firefox 140.10.2+ Fix from $2,3002026-05-07 CRITICAL 9.6 CVE-2026-7321 Sandbox escape due to incorrect boundary conditions in the WebRTC: Networking component. This vulnerability was fixed in Firefox 150, Thunderbird 150… Firefox 140.10.1 / 150.0+ Fix from $2,3002026-04-28 CRITICAL 9.8 CVE-2026-6768 Mitigation bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. Firefox 150.0+ Fix from $2,3002026-04-21 CRITICAL 9.8 CVE-2026-6771 Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 1… Firefox 140.10.0 / 150.0+ Fix from $2,3002026-04-21 CRITICAL 9.8 CVE-2026-6760 Mitigation bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. Firefox 150.0+ Fix from $2,3002026-04-21 CRITICAL 9.8 CVE-2026-6748 Uninitialized memory in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and … Firefox 140.10.0 / 150.0+ Fix from $2,3002026-04-21 CRITICAL 9.8 CVE-2026-5731 Memory safety bugs present in Firefox ESR 115.34.0, Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of th… Firefox Mitigation only Fix from $2,3002026-04-07 CRITICAL 9.8 CVE-2026-5734 Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed eviden… Firefox 140.9.1 / 149.0.2+ Fix from $2,3002026-04-07 CRITICAL 9.8 CVE-2026-5735 Memory safety bugs present in Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and we presume that wi… Firefox 149.0.2+ Fix from $2,3002026-04-07 CRITICAL 10.0 CVE-2026-4725 Sandbox escape due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 149 and Thunderbird 149. Firefox 149.0+ Fix from $2,3002026-03-24 CRITICAL 9.8 CVE-2026-4723 Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 149 and Thunderbird 149. Firefox 149.0+ Fix from $2,3002026-03-24 CRITICAL 9.8 CVE-2026-4729 Memory safety bugs present in Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enoug… Firefox 149.0+ Fix from $2,3002026-03-24 CRITICAL 9.1 CVE-2026-4724 Undefined behavior in the Audio/Video component. This vulnerability was fixed in Firefox 149 and Thunderbird 149. Firefox 149.0+ Fix from $2,3002026-03-24 CRITICAL 9.8 CVE-2026-4711 Use-after-free in the Widget: Cocoa component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunderbird 140.9. Firefox 140.9.0 / 149.0+ Fix from $2,3002026-03-24 CRITICAL 9.8 CVE-2026-4717 Privilege escalation in the Netmonitor component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunderbird 14… Firefox 140.9.0 / 149.0+ Fix from $2,3002026-03-24 CRITICAL 9.8 CVE-2026-4720 Memory safety bugs present in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory… Firefox 140.9.0 / 149.0+ Fix from $2,3002026-03-24 CRITICAL 9.8 CVE-2026-4721 Memory safety bugs present in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showe… Firefox 115.34.0 / 140.9.0+ Fix from $2,3002026-03-24 CRITICAL 9.1 CVE-2026-4715 Uninitialized memory in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunde… Firefox 140.9.0 / 149.0+ Fix from $2,3002026-03-24 CRITICAL 9.1 CVE-2026-4716 Incorrect boundary conditions, uninitialized memory in the JavaScript Engine component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.… Firefox 140.9.0 / 149.0+ Fix from $2,3002026-03-24 CRITICAL 9.8 CVE-2026-4700 Mitigation bypass in the Networking: HTTP component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunderbird… Firefox 140.9.0 / 149.0+ Fix from $2,3002026-03-24