Vulnerability index

Browse CVEs

38 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Firefox CRITICAL 10.0
CVE-2026-75874

Sandbox escape in the Remote Settings Client component. This vulnerability was fixed in Firefox 154 and Thunderbird 154.

Fix: 154.0 / 154.0.0+
Fix from $5,750 2026-08-18
Firefox CRITICAL 9.8
CVE-2026-74990

Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corr…

Fix: 115.39.0 / 140.14.0+
Fix from $5,750 2026-08-18
Firefox CRITICAL 9.8
CVE-2026-74987

Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corr…

Fix: 140.14.0 / 153.1.0+
Fix from $5,750 2026-08-18
Firefox CRITICAL 9.8
CVE-2026-74988

Internally found bugs present in Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corruption or another securi…

Fix: 153.1.0+
Fix from $5,750 2026-08-18
Firefox CRITICAL 9.8
CVE-2026-74989

Internally found bugs present in Thunderbird 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we …

Fix: 154.0 / 154.0.0+
Fix from $5,750 2026-08-18
Firefox HIGH 8.1
CVE-2026-74983

Mitigation bypass in the Data Loss Prevention component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderb…

Fix: 140.14.0 / 153.1.0+
Fix from $4,900 2026-08-18
Firefox CRITICAL 9.8
CVE-2026-74979

Mitigation bypass in the Add-ons Manager component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird …

Fix: 153.1.0 / 154.0+
Fix from $5,750 2026-08-18
Firefox MEDIUM 6.5
CVE-2026-74976

JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thund…

Fix: 140.14.0 / 153.1.0+
Fix from $4,000 2026-08-18
Firefox MEDIUM 5.4
CVE-2026-74974

Same-origin policy bypass in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, F…

Fix: 115.39.0 / 140.14.0+
Fix from $4,000 2026-08-18
Firefox HIGH 8.8
CVE-2026-74969

Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox …

Fix: 115.39.0 / 140.14.0+
Fix from $4,900 2026-08-18
Firefox MEDIUM 5.4
CVE-2026-74967

Same-origin policy bypass in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1,…

Fix: 140.14.0 / 153.1.0+
Fix from $4,000 2026-08-18
Firefox MEDIUM 5.4
CVE-2026-74968

Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thund…

Fix: 153.1.0 / 154.0+
Fix from $4,000 2026-08-18
Firefox CRITICAL 9.8
CVE-2026-74964

Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thun…

Fix: 140.14.0 / 153.1.0+
Fix from $5,750 2026-08-18
Firefox CRITICAL 9.1
CVE-2026-74961

Side-channel in the Web Audio component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.

Fix: 153.1.0+
Fix from $5,750 2026-08-18
Firefox HIGH 8.8
CVE-2026-74965

Privilege escalation in the Shell Integration component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderb…

Fix: 140.14.0 / 153.1.0+
Fix from $4,900 2026-08-18
Firefox HIGH 8.1
CVE-2026-74962

Site isolation issue in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunde…

Fix: 140.14.0 / 153.1.0+
Fix from $4,900 2026-08-18
Firefox MEDIUM 5.4
CVE-2026-74963

Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, T…

Fix: 140.14.0 / 153.1.0+
Fix from $4,000 2026-08-18
Firefox CRITICAL 9.1
CVE-2026-74956

Same-origin policy bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and…

Fix: 153.1.0 / 154.0+
Fix from $5,750 2026-08-18
Firefox HIGH 8.8
CVE-2026-74952

Privilege escalation in the Application Update component. This vulnerability was fixed in Firefox 154 and Thunderbird 154.

Fix: 154.0 / 154.0.0+
Fix from $4,900 2026-08-18
Firefox HIGH 8.8
CVE-2026-74953

Privilege escalation in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunde…

Fix: 140.14.0 / 153.1.0+
Fix from $4,900 2026-08-18
Firefox HIGH 8.8
CVE-2026-74955

Privilege escalation in the Request Handling component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderb…

Fix: 153.1.0 / 154.0+
Fix from $4,900 2026-08-18
Firefox HIGH 7.5
CVE-2026-74954

Information disclosure due to side-channel in the Storage: Cache API component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thund…

Fix: 153.1.0 / 154.0+
Fix from $4,900 2026-08-18
Firefox HIGH 7.5
CVE-2026-74958

Information disclosure in the WebRTC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.…

Fix: 153.1.0 / 154.0+
Fix from $4,900 2026-08-18
Firefox HIGH 8.8
CVE-2026-74946

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 154, Firefo…

Fix: 115.39.0 / 140.14.0+
Fix from $4,900 2026-08-18
Firefox HIGH 8.8
CVE-2026-74947

Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 15…

Fix: 153.1.0 / 154.0+
Fix from $4,900 2026-08-18
Firefox HIGH 8.8
CVE-2026-74949

Privilege escalation due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Fire…

Fix: 140.14.0 / 153.1.0+
Fix from $4,900 2026-08-18
Firefox HIGH 8.8
CVE-2026-74950

Privilege escalation in the Downloads API component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird…

Fix: 153.1.0 / 154.0+
Fix from $4,900 2026-08-18
Firefox Mobile MEDIUM 6.5
CVE-2026-74951

Clickjacking issue in Firefox for Android. This vulnerability was fixed in Firefox 154.

Fix: 154.0+
Fix from $4,000 2026-08-18
Firefox CRITICAL 9.8
CVE-2026-74940

Use-after-free in the Graphics: Text component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.…

Fix: 115.39.0 / 140.14.0+
Fix from $5,750 2026-08-18
Firefox CRITICAL 9.8
CVE-2026-74943

Use-after-free in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR …

Fix: 115.39.0 / 140.14.0+
Fix from $5,750 2026-08-18