Vulnerability index

Browse CVEs

2,857 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2026-8974 Memory safety bugs present in Firefox ESR 140.10 and Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that with en… Firefox 140.11 / 140.11.0+ Fix from $1,9502026-05-19 HIGH 8.1 CVE-2026-8969 Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. Firefox 151.0.0+ Fix from $1,9502026-05-19 HIGH 7.5 CVE-2026-8966 Information disclosure in the IP Protection component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. Firefox 151.0.0+ Fix from $1,9502026-05-19 HIGH 7.5 CVE-2026-8967 Information disclosure in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. Firefox 151.0.0+ Fix from $1,9502026-05-19 HIGH 7.5 CVE-2026-8968 Denial-of-service due to invalid pointer in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, T… Firefox 140.11 / 140.11.0+ Fix from $1,9502026-05-19 MEDIUM 6.5 CVE-2026-8971 Same-origin policy bypass in the Networking: JAR component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. Firefox 151.0.0+ Fix from $1,6002026-05-19 CRITICAL 9.6 CVE-2026-8959 Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, … Firefox 140.11 / 140.11.0+ Fix from $2,3002026-05-19 HIGH 8.8 CVE-2026-8957 Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thun… Firefox 140.11 / 140.11.0+ Fix from $1,9502026-05-19 HIGH 8.6 CVE-2026-8958 Information disclosure, sandbox escape in the Security: Process Sandboxing component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11… Firefox 140.11 / 140.11.0+ Fix from $1,9502026-05-19 HIGH 8.1 CVE-2026-8962 Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 1… Firefox 140.11 / 140.11.0+ Fix from $1,9502026-05-19 HIGH 7.5 CVE-2026-8960 Spoofing issue in WebExtensions. This vulnerability was fixed in Firefox 151 and Thunderbird 151. Firefox 151.0.0+ Fix from $1,9502026-05-19 HIGH 7.5 CVE-2026-8963 Spoofing issue in the Web Speech component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. Firefox 151.0.0+ Fix from $1,9502026-05-19 HIGH 7.5 CVE-2026-8964 Spoofing issue in the Popup Blocker component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. Firefox 151.0.0+ Fix from $1,9502026-05-19 HIGH 7.5 CVE-2026-8965 Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. Firefox 151.0.0+ Fix from $1,9502026-05-19 MEDIUM 6.5 CVE-2026-8961 Spoofing issue in the Form Autofill component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.… Firefox 140.11 / 140.11.0+ Fix from $1,6002026-05-19 CRITICAL 9.8 CVE-2026-8956 Integer overflow in the Networking: JAR component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird … Firefox 140.11 / 140.11.0+ Fix from $2,3002026-05-19 CRITICAL 9.6 CVE-2026-8953 Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefo… Firefox 115.36.0 / 140.11+ Fix from $2,3002026-05-19 CRITICAL 9.3 CVE-2026-8950 Same-origin policy bypass in the Networking: HTTP component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Th… Firefox 140.11 / 140.11.0+ Fix from $2,3002026-05-19 CRITICAL 9.1 CVE-2026-8948 Same-origin policy bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. Firefox 151.0.0+ Fix from $2,3002026-05-19 HIGH 8.8 CVE-2026-8952 Privilege escalation in the Application Update component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. Firefox 151.0.0+ Fix from $1,9502026-05-19 HIGH 8.8 CVE-2026-8955 Privilege escalation in the DOM: Workers component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird… Firefox 140.11 / 140.11.0+ Fix from $1,9502026-05-19 HIGH 7.5 CVE-2026-8949 Integer overflow in the Widget: Win32 component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 14… Firefox 140.11 / 140.11.0+ Fix from $1,9502026-05-19 HIGH 7.5 CVE-2026-8954 Incorrect boundary conditions, integer overflow in the Audio/Video component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunde… Firefox 140.11 / 140.11.0+ Fix from $1,9502026-05-19 MEDIUM 6.5 CVE-2026-8951 Spoofing issue in the Toolbar component in Firefox for Android. This vulnerability was fixed in Firefox 151. Firefox 151.0.0+ Fix from $1,6002026-05-19 HIGH 7.5 CVE-2026-8945 Sandbox escape in Firefox and Firefox Focus for Android. This vulnerability was fixed in Firefox 151. Firefox 151.0 / 151.0.0+ Fix from $1,9502026-05-19 HIGH 7.5 CVE-2026-8946 Incorrect boundary conditions in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefox ESR … Firefox 115.36.0 / 140.11+ Fix from $1,9502026-05-19 HIGH 7.3 CVE-2026-8947 Use-after-free in the DOM: Bindings (WebIDL) component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefox ESR 140.11, Thunderb… Firefox 115.36.0 / 140.11+ Fix from $1,9502026-05-19 CRITICAL 9.8 CVE-2026-8401 Sandbox escape in the Profile Backup component. This vulnerability was fixed in Firefox 150.0.3, Firefox ESR 115.36, Firefox ESR 140.11, and Thunderb… Firefox 150.0.3+ Fix from $2,3002026-05-12 HIGH 7.3 CVE-2026-8390 Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 150.0.3. Firefox 150.0.3+ Fix from $1,9502026-05-12 MEDIUM 5.3 CVE-2026-8391 Other issue in the JavaScript Engine component. This vulnerability was fixed in Firefox 150.0.3, Firefox ESR 115.36, Firefox ESR 140.11, and Thunderb… Firefox 150.0.3+ Fix from $1,6002026-05-12