Vulnerability index

Browse CVEs

2,857 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2026-4709 Incorrect boundary conditions in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, … Firefox 115.34.0 / 140.9.0+ Fix from $1,9502026-03-24 CRITICAL 10.0 CVE-2026-4692 Sandbox escape in the Responsive Design Mode component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thunderbi… Firefox 115.34.0 / 140.9.0+ Fix from $2,3002026-03-24 CRITICAL 9.8 CVE-2026-4696 Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thunderbi… Firefox 115.34.0 / 140.9.0+ Fix from $2,3002026-03-24 CRITICAL 9.8 CVE-2026-4698 JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thund… Firefox 115.34.0 / 140.9.0+ Fix from $2,3002026-03-24 HIGH 7.5 CVE-2026-4693 Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 14… Firefox 115.34.0 / 140.9.0+ Fix from $1,9502026-03-24 HIGH 7.5 CVE-2026-4694 Incorrect boundary conditions, integer overflow in the Graphics component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox E… Firefox 115.34.0 / 140.9.0+ Fix from $1,9502026-03-24 HIGH 7.5 CVE-2026-4695 Incorrect boundary conditions in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 1… Firefox 140.9.0 / 149.0+ Fix from $1,9502026-03-24 HIGH 7.5 CVE-2026-4697 Incorrect boundary conditions in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 1… Firefox 140.9.0 / 149.0+ Fix from $1,9502026-03-24 HIGH 7.5 CVE-2026-4699 Incorrect boundary conditions in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 1… Firefox 115.34.0 / 140.9.0+ Fix from $1,9502026-03-24 CRITICAL 10.0 CVE-2026-4688 Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunder… Firefox 140.9.0 / 149.0+ Fix from $2,3002026-03-24 CRITICAL 10.0 CVE-2026-4689 Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. This vulnerability was fixed in Firefox 149, Firefox ES… Firefox 115.34.0 / 140.9.0+ Fix from $2,3002026-03-24 CRITICAL 9.8 CVE-2026-4691 Use-after-free in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thun… Firefox 115.34.0 / 140.9.0+ Fix from $2,3002026-03-24 HIGH 8.6 CVE-2026-4687 Sandbox escape due to incorrect boundary conditions in the Telemetry component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Fire… Firefox 115.34.0 / 140.9.0+ Fix from $1,9502026-03-24 HIGH 8.6 CVE-2026-4690 Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. This vulnerability was fixed in Firefox 149, Firefox ES… Firefox 115.34.0 / 140.9.0+ Fix from $1,9502026-03-24 HIGH 7.5 CVE-2026-4684 Race condition, use-after-free in the Graphics: WebRender component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140… Firefox 115.34.0 / 140.9.0+ Fix from $1,9502026-03-24 HIGH 7.5 CVE-2026-4685 Incorrect boundary conditions in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9… Firefox 115.34.0 / 140.9.0+ Fix from $1,9502026-03-24 HIGH 7.5 CVE-2026-4686 Incorrect boundary conditions in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9… Firefox 115.34.0 / 140.9.0+ Fix from $1,9502026-03-24 HIGH 8.8 CVE-2026-3845 Heap buffer overflow in the Audio/Video: Playback component in Firefox for Android. This vulnerability was fixed in Firefox 148.0.2. Firefox 148.0.2+ Fix from $1,9502026-03-10 HIGH 8.8 CVE-2026-3847 Memory safety bugs present in Firefox 148.0.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of… Firefox 148.0.2+ Fix from $1,9502026-03-10 MEDIUM 6.5 CVE-2026-3846 Same-origin policy bypass in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 148.0.2. Firefox 148.0.2+ Fix from $1,6002026-03-10 CRITICAL 9.8 CVE-2026-2805 Invalid pointer in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. Firefox 148.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2807 Memory safety bugs present in Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enoug… Firefox 148.0+ Fix from $2,3002026-02-24 CRITICAL 9.1 CVE-2026-2806 Uninitialized memory in the Graphics: Text component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. Firefox 148.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2795 Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. Firefox 148.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2796 JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. Firefox 148.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2797 Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. Firefox 148.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2799 Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. Firefox 148.0+ Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-2800 Spoofing issue in the WebAuthn component in Firefox for Android. This vulnerability was fixed in Firefox 148 and Thunderbird 148. Firefox 148.0+ Fix from $2,3002026-02-24 HIGH 8.8 CVE-2026-2798 Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. Firefox 148.0+ Fix from $1,9502026-02-24 HIGH 7.5 CVE-2026-2801 Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. Firefox 148.0+ Fix from $1,9502026-02-24