Vulnerability index

Browse CVEs

2,857 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Firefox HIGH 7.5
CVE-2026-4709

Incorrect boundary conditions in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, …

Fix: 115.34.0 / 140.9.0+
Fix from $1,950 2026-03-24
Firefox CRITICAL 10.0
CVE-2026-4692

Sandbox escape in the Responsive Design Mode component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thunderbi…

Fix: 115.34.0 / 140.9.0+
Fix from $2,300 2026-03-24
Firefox CRITICAL 9.8
CVE-2026-4696

Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thunderbi…

Fix: 115.34.0 / 140.9.0+
Fix from $2,300 2026-03-24
Firefox CRITICAL 9.8
CVE-2026-4698

JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thund…

Fix: 115.34.0 / 140.9.0+
Fix from $2,300 2026-03-24
Firefox HIGH 7.5
CVE-2026-4693

Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 14…

Fix: 115.34.0 / 140.9.0+
Fix from $1,950 2026-03-24
Firefox HIGH 7.5
CVE-2026-4694

Incorrect boundary conditions, integer overflow in the Graphics component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox E…

Fix: 115.34.0 / 140.9.0+
Fix from $1,950 2026-03-24
Firefox HIGH 7.5
CVE-2026-4695

Incorrect boundary conditions in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 1…

Fix: 140.9.0 / 149.0+
Fix from $1,950 2026-03-24
Firefox HIGH 7.5
CVE-2026-4697

Incorrect boundary conditions in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 1…

Fix: 140.9.0 / 149.0+
Fix from $1,950 2026-03-24
Firefox HIGH 7.5
CVE-2026-4699

Incorrect boundary conditions in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 1…

Fix: 115.34.0 / 140.9.0+
Fix from $1,950 2026-03-24
Firefox CRITICAL 10.0
CVE-2026-4688

Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunder…

Fix: 140.9.0 / 149.0+
Fix from $2,300 2026-03-24
Firefox CRITICAL 10.0
CVE-2026-4689

Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. This vulnerability was fixed in Firefox 149, Firefox ES…

Fix: 115.34.0 / 140.9.0+
Fix from $2,300 2026-03-24
Firefox CRITICAL 9.8
CVE-2026-4691

Use-after-free in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thun…

Fix: 115.34.0 / 140.9.0+
Fix from $2,300 2026-03-24
Firefox HIGH 8.6
CVE-2026-4687

Sandbox escape due to incorrect boundary conditions in the Telemetry component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Fire…

Fix: 115.34.0 / 140.9.0+
Fix from $1,950 2026-03-24
Firefox HIGH 8.6
CVE-2026-4690

Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. This vulnerability was fixed in Firefox 149, Firefox ES…

Fix: 115.34.0 / 140.9.0+
Fix from $1,950 2026-03-24
Firefox HIGH 7.5
CVE-2026-4684

Race condition, use-after-free in the Graphics: WebRender component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140…

Fix: 115.34.0 / 140.9.0+
Fix from $1,950 2026-03-24
Firefox HIGH 7.5
CVE-2026-4685

Incorrect boundary conditions in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9…

Fix: 115.34.0 / 140.9.0+
Fix from $1,950 2026-03-24
Firefox HIGH 7.5
CVE-2026-4686

Incorrect boundary conditions in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9…

Fix: 115.34.0 / 140.9.0+
Fix from $1,950 2026-03-24
Firefox HIGH 8.8
CVE-2026-3845

Heap buffer overflow in the Audio/Video: Playback component in Firefox for Android. This vulnerability was fixed in Firefox 148.0.2.

Fix: 148.0.2+
Fix from $1,950 2026-03-10
Firefox HIGH 8.8
CVE-2026-3847

Memory safety bugs present in Firefox 148.0.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of…

Fix: 148.0.2+
Fix from $1,950 2026-03-10
Firefox MEDIUM 6.5
CVE-2026-3846

Same-origin policy bypass in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 148.0.2.

Fix: 148.0.2+
Fix from $1,600 2026-03-10
Firefox CRITICAL 9.8
CVE-2026-2805

Invalid pointer in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 148 and Thunderbird 148.

Fix: 148.0+
Fix from $2,300 2026-02-24
Firefox CRITICAL 9.8
CVE-2026-2807

Memory safety bugs present in Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enoug…

Fix: 148.0+
Fix from $2,300 2026-02-24
Firefox CRITICAL 9.1
CVE-2026-2806

Uninitialized memory in the Graphics: Text component. This vulnerability was fixed in Firefox 148 and Thunderbird 148.

Fix: 148.0+
Fix from $2,300 2026-02-24
Firefox CRITICAL 9.8
CVE-2026-2795

Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 148 and Thunderbird 148.

Fix: 148.0+
Fix from $2,300 2026-02-24
Firefox CRITICAL 9.8
CVE-2026-2796

JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 148 and Thunderbird 148.

Fix: 148.0+
Fix from $2,300 2026-02-24
Firefox CRITICAL 9.8
CVE-2026-2797

Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 148 and Thunderbird 148.

Fix: 148.0+
Fix from $2,300 2026-02-24
Firefox CRITICAL 9.8
CVE-2026-2799

Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 148 and Thunderbird 148.

Fix: 148.0+
Fix from $2,300 2026-02-24
Firefox CRITICAL 9.8
CVE-2026-2800

Spoofing issue in the WebAuthn component in Firefox for Android. This vulnerability was fixed in Firefox 148 and Thunderbird 148.

Fix: 148.0+
Fix from $2,300 2026-02-24
Firefox HIGH 8.8
CVE-2026-2798

Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 148 and Thunderbird 148.

Fix: 148.0+
Fix from $1,950 2026-02-24
Firefox HIGH 7.5
CVE-2026-2801

Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 148 and Thunderbird 148.

Fix: 148.0+
Fix from $1,950 2026-02-24