Vulnerability index

Browse CVEs

2,857 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2026-6761 Privilege escalation in the Networking component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 1… Firefox 140.10.0 / 150.0+ Fix from $1,9502026-04-21 HIGH 8.8 CVE-2026-6769 Privilege escalation in the Debugger component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140… Firefox 140.10.0 / 150.0+ Fix from $1,9502026-04-21 HIGH 7.5 CVE-2026-6766 Incorrect boundary conditions in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, an… Firefox 140.10.0 / 150.0+ Fix from $1,9502026-04-21 MEDIUM 6.5 CVE-2026-6763 Mitigation bypass in the File Handling component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 1… Firefox 140.10.0 / 150.0+ Fix from $1,6002026-04-21 MEDIUM 6.5 CVE-2026-6764 Incorrect boundary conditions in the DOM: Device Interfaces component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 1… Firefox 140.10.0 / 150.0+ Fix from $1,6002026-04-21 MEDIUM 6.5 CVE-2026-6770 Other issue in the Storage: IndexedDB component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 14… Firefox 140.10.0 / 150.0+ Fix from $1,6002026-04-21 MEDIUM 6.3 CVE-2026-6762 Spoofing issue in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 15… Firefox 140.10.0 / 150.0+ Fix from $1,6002026-04-21 MEDIUM 5.3 CVE-2026-6765 Information disclosure in the Form Autofill component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderb… Firefox 140.10.0 / 150.0+ Fix from $1,6002026-04-21 MEDIUM 5.3 CVE-2026-6767 Other issue in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, … Firefox 115.35.0 / 140.10.0+ Fix from $1,6002026-04-21 CRITICAL 9.8 CVE-2026-6760 Mitigation bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. Firefox 150.0+ Fix from $2,3002026-04-21 HIGH 8.8 CVE-2026-6750 Privilege escalation in the Graphics: WebRender component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thund… Firefox 115.35.0 / 140.10.0+ Fix from $1,9502026-04-21 HIGH 7.5 CVE-2026-6754 Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 1… Firefox 115.35.0 / 140.10.0+ Fix from $1,9502026-04-21 HIGH 7.5 CVE-2026-6756 Mitigation bypass in Firefox for Android. This vulnerability was fixed in Firefox 150. Firefox 150.0+ Fix from $1,9502026-04-21 HIGH 7.5 CVE-2026-6758 Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. Firefox 150.0+ Fix from $1,9502026-04-21 HIGH 7.5 CVE-2026-6759 Use-after-free in the Widget: Cocoa component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.… Firefox 140.10.0 / 150.0+ Fix from $1,9502026-04-21 HIGH 7.3 CVE-2026-6751 Uninitialized memory in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and … Firefox 140.10.0 / 150.0+ Fix from $1,9502026-04-21 HIGH 7.3 CVE-2026-6752 Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbi… Firefox 115.35.0 / 140.10.0+ Fix from $1,9502026-04-21 HIGH 7.3 CVE-2026-6753 Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderb… Firefox 140.10.0 / 150.0+ Fix from $1,9502026-04-21 MEDIUM 6.5 CVE-2026-6755 Mitigation bypass in the DOM: postMessage component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. Firefox 150.0+ Fix from $1,6002026-04-21 MEDIUM 6.3 CVE-2026-6757 Invalid pointer in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thund… Firefox 140.10.0 / 150.0+ Fix from $1,6002026-04-21 CRITICAL 9.8 CVE-2026-6748 Uninitialized memory in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and … Firefox 140.10.0 / 150.0+ Fix from $2,3002026-04-21 HIGH 7.5 CVE-2026-6746 Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 15… Firefox 115.35.0 / 140.10.0+ Fix from $1,9502026-04-21 HIGH 7.5 CVE-2026-6747 Use-after-free in the WebRTC component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10. Firefox 140.10.0 / 150.0+ Fix from $1,9502026-04-21 HIGH 7.5 CVE-2026-6749 Information disclosure due to uninitialized memory in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.… Firefox 115.35.0 / 140.10.0+ Fix from $1,9502026-04-21 MEDIUM 5.1 CVE-2026-6654 Double-Free / Use-After-Free (UAF) in the `IntoIter::drop` and `ThinVec::clear` functions in the thin_vec crate. A panic in `ptr::drop_in_place` skip… Thin Vec No fix yet Fix from $1,6002026-04-20 CRITICAL 9.8 CVE-2026-5731 Memory safety bugs present in Firefox ESR 115.34.0, Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of th… Firefox Mitigation only Fix from $2,3002026-04-07 CRITICAL 9.8 CVE-2026-5734 Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed eviden… Firefox 140.9.1 / 149.0.2+ Fix from $2,3002026-04-07 CRITICAL 9.8 CVE-2026-5735 Memory safety bugs present in Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and we presume that wi… Firefox 149.0.2+ Fix from $2,3002026-04-07 HIGH 8.8 CVE-2026-5732 Incorrect boundary conditions, integer overflow in the Graphics: Text component. This vulnerability was fixed in Firefox 149.0.2, Firefox ESR 140.9.1… Firefox 140.9.1 / 149.0.2+ Fix from $1,9502026-04-07 HIGH 8.8 CVE-2026-5733 Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 149.0.2 and Thunderbird 149.0.2. Firefox 149.0.2+ Fix from $1,9502026-04-07