Vulnerability index

Browse CVEs

259 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
CRITICAL 9.8 CVE-2026-4701 Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunderbird 1… Firefox 140.9.0 / 149.0+ Fix from $2,3002026-03-24 CRITICAL 9.8 CVE-2026-4696 Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thunderbi… Firefox 115.34.0 / 140.9.0+ Fix from $2,3002026-03-24 CRITICAL 10.0 CVE-2026-4688 Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunder… Firefox 140.9.0 / 149.0+ Fix from $2,3002026-03-24 CRITICAL 9.8 CVE-2026-4691 Use-after-free in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thun… Firefox 115.34.0 / 140.9.0+ Fix from $2,3002026-03-24 HIGH 7.5 CVE-2026-4684 Race condition, use-after-free in the Graphics: WebRender component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140… Firefox 115.34.0 / 140.9.0+ Fix from $1,9502026-03-24 HIGH 8.8 CVE-2026-3847 Memory safety bugs present in Firefox 148.0.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of… Firefox 148.0.2+ Fix from $1,9502026-03-10 CRITICAL 9.8 CVE-2026-2795 Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. Firefox 148.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2797 Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. Firefox 148.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2799 Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. Firefox 148.0+ Fix from $2,3002026-02-24 HIGH 8.8 CVE-2026-2798 Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. Firefox 148.0+ Fix from $1,9502026-02-24 MEDIUM 5.4 CVE-2026-2804 Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. Firefox 148.0+ Fix from $1,6002026-02-24 CRITICAL 9.8 CVE-2026-2786 Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 1… Firefox 140.8.0 / 148.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2787 Use-after-free in the DOM: Window and Location component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunder… Firefox 115.33.0 / 140.8.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2789 Use-after-free in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 1… Firefox 115.33.0 / 140.8.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2767 Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunder… Firefox 140.8.0 / 148.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2770 Use-after-free in the DOM: Bindings (WebIDL) component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbi… Firefox 115.33.0 / 140.8.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2772 Use-after-free in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbir… Firefox 115.33.0 / 140.8.0+ Fix from $2,3002026-02-24 HIGH 8.8 CVE-2026-2769 Use-after-free in the Storage: IndexedDB component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 1… Firefox 115.33.0 / 140.8.0+ Fix from $1,9502026-02-24 CRITICAL 9.8 CVE-2026-2758 Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, … Firefox 115.33.0 / 140.8.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2763 Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 14… Firefox 115.33.0 / 140.8.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2764 JIT miscompilation, use-after-free in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox … Firefox 115.33.0 / 140.8.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2765 Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 1… Firefox 140.8.0 / 148.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2766 Use-after-free in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderb… Firefox 140.8.0 / 148.0+ Fix from $2,3002026-02-24 HIGH 8.8 CVE-2026-24869 Use-after-free in the Layout: Scrolling and Overflow component. This vulnerability was fixed in Firefox 147.0.2. Firefox 147.0.2+ Fix from $1,9502026-01-27 MEDIUM 6.5 CVE-2026-0885 Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 147, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.… Firefox 140.7.0 / 147.0+ Fix from $1,6002026-01-13 CRITICAL 9.8 CVE-2026-0884 Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 147, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 1… Firefox 140.7.0 / 147.0+ Fix from $2,3002026-01-13 HIGH 8.8 CVE-2026-0882 Use-after-free in the IPC component. This vulnerability was fixed in Firefox 147, Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird 147, and Thunder… Firefox 115.32.0 / 140.7.0+ Fix from $1,9502026-01-13 CRITICAL 9.8 CVE-2025-14860 Use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 146.0.1. Firefox 146.0.1+ Fix from $2,3002025-12-18 CRITICAL 9.8 CVE-2025-14326 Use-after-free in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 146 and Thunderbird 146. Firefox 146.0+ Fix from $2,3002025-12-09 CRITICAL 9.8 CVE-2025-14321 Use-after-free in the WebRTC: Signaling component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thunderbird 1… Firefox 140.6.0 / 146.0+ Fix from $2,3002025-12-09