Vulnerability index

Browse CVEs

2,857 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Firefox HIGH 8.8
CVE-2026-8974

Memory safety bugs present in Firefox ESR 140.10 and Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that with en…

Fix: 140.11 / 140.11.0+
Fix from $1,950 2026-05-19
Firefox HIGH 8.1
CVE-2026-8969

Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 151 and Thunderbird 151.

Fix: 151.0.0+
Fix from $1,950 2026-05-19
Firefox HIGH 7.5
CVE-2026-8966

Information disclosure in the IP Protection component. This vulnerability was fixed in Firefox 151 and Thunderbird 151.

Fix: 151.0.0+
Fix from $1,950 2026-05-19
Firefox HIGH 7.5
CVE-2026-8967

Information disclosure in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 151 and Thunderbird 151.

Fix: 151.0.0+
Fix from $1,950 2026-05-19
Firefox HIGH 7.5
CVE-2026-8968

Denial-of-service due to invalid pointer in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, T…

Fix: 140.11 / 140.11.0+
Fix from $1,950 2026-05-19
Firefox MEDIUM 6.5
CVE-2026-8971

Same-origin policy bypass in the Networking: JAR component. This vulnerability was fixed in Firefox 151 and Thunderbird 151.

Fix: 151.0.0+
Fix from $1,600 2026-05-19
Firefox CRITICAL 9.6
CVE-2026-8959

Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, …

Fix: 140.11 / 140.11.0+
Fix from $2,300 2026-05-19
Firefox HIGH 8.8
CVE-2026-8957

Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thun…

Fix: 140.11 / 140.11.0+
Fix from $1,950 2026-05-19
Firefox HIGH 8.6
CVE-2026-8958

Information disclosure, sandbox escape in the Security: Process Sandboxing component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11…

Fix: 140.11 / 140.11.0+
Fix from $1,950 2026-05-19
Firefox HIGH 8.1
CVE-2026-8962

Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 1…

Fix: 140.11 / 140.11.0+
Fix from $1,950 2026-05-19
Firefox HIGH 7.5
CVE-2026-8960

Spoofing issue in WebExtensions. This vulnerability was fixed in Firefox 151 and Thunderbird 151.

Fix: 151.0.0+
Fix from $1,950 2026-05-19
Firefox HIGH 7.5
CVE-2026-8963

Spoofing issue in the Web Speech component. This vulnerability was fixed in Firefox 151 and Thunderbird 151.

Fix: 151.0.0+
Fix from $1,950 2026-05-19
Firefox HIGH 7.5
CVE-2026-8964

Spoofing issue in the Popup Blocker component. This vulnerability was fixed in Firefox 151 and Thunderbird 151.

Fix: 151.0.0+
Fix from $1,950 2026-05-19
Firefox HIGH 7.5
CVE-2026-8965

Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 151 and Thunderbird 151.

Fix: 151.0.0+
Fix from $1,950 2026-05-19
Firefox MEDIUM 6.5
CVE-2026-8961

Spoofing issue in the Form Autofill component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.…

Fix: 140.11 / 140.11.0+
Fix from $1,600 2026-05-19
Firefox CRITICAL 9.8
CVE-2026-8956

Integer overflow in the Networking: JAR component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird …

Fix: 140.11 / 140.11.0+
Fix from $2,300 2026-05-19
Firefox CRITICAL 9.6
CVE-2026-8953

Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefo…

Fix: 115.36.0 / 140.11+
Fix from $2,300 2026-05-19
Firefox CRITICAL 9.3
CVE-2026-8950

Same-origin policy bypass in the Networking: HTTP component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Th…

Fix: 140.11 / 140.11.0+
Fix from $2,300 2026-05-19
Firefox CRITICAL 9.1
CVE-2026-8948

Same-origin policy bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 151 and Thunderbird 151.

Fix: 151.0.0+
Fix from $2,300 2026-05-19
Firefox HIGH 8.8
CVE-2026-8952

Privilege escalation in the Application Update component. This vulnerability was fixed in Firefox 151 and Thunderbird 151.

Fix: 151.0.0+
Fix from $1,950 2026-05-19
Firefox HIGH 8.8
CVE-2026-8955

Privilege escalation in the DOM: Workers component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird…

Fix: 140.11 / 140.11.0+
Fix from $1,950 2026-05-19
Firefox HIGH 7.5
CVE-2026-8949

Integer overflow in the Widget: Win32 component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 14…

Fix: 140.11 / 140.11.0+
Fix from $1,950 2026-05-19
Firefox HIGH 7.5
CVE-2026-8954

Incorrect boundary conditions, integer overflow in the Audio/Video component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunde…

Fix: 140.11 / 140.11.0+
Fix from $1,950 2026-05-19
Firefox MEDIUM 6.5
CVE-2026-8951

Spoofing issue in the Toolbar component in Firefox for Android. This vulnerability was fixed in Firefox 151.

Fix: 151.0.0+
Fix from $1,600 2026-05-19
Firefox HIGH 7.5
CVE-2026-8945

Sandbox escape in Firefox and Firefox Focus for Android. This vulnerability was fixed in Firefox 151.

Fix: 151.0 / 151.0.0+
Fix from $1,950 2026-05-19
Firefox HIGH 7.5
CVE-2026-8946

Incorrect boundary conditions in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefox ESR …

Fix: 115.36.0 / 140.11+
Fix from $1,950 2026-05-19
Firefox HIGH 7.3
CVE-2026-8947

Use-after-free in the DOM: Bindings (WebIDL) component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefox ESR 140.11, Thunderb…

Fix: 115.36.0 / 140.11+
Fix from $1,950 2026-05-19
Firefox CRITICAL 9.8
CVE-2026-8401

Sandbox escape in the Profile Backup component. This vulnerability was fixed in Firefox 150.0.3, Firefox ESR 115.36, Firefox ESR 140.11, and Thunderb…

Fix: 150.0.3+
Fix from $2,300 2026-05-12
Firefox HIGH 7.3
CVE-2026-8390

Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 150.0.3.

Fix: 150.0.3+
Fix from $1,950 2026-05-12
Firefox MEDIUM 5.3
CVE-2026-8391

Other issue in the JavaScript Engine component. This vulnerability was fixed in Firefox 150.0.3, Firefox ESR 115.36, Firefox ESR 140.11, and Thunderb…

Fix: 150.0.3+
Fix from $1,600 2026-05-12