Mozilla
127 CVEsCVE IDSeverityProduct / summaryPublished
CVE-2026-74934
HIGH 7.5
Firefox — Site isolation issue in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 154, Fire…
2026-08-18
CVE-2026-74935
HIGH 8.8
Firefox — Privilege escalation in the DOM: Networking component. This vulnerability was fixed in Firefox 154, Firefox ES…
2026-08-18
CVE-2026-74936
CRITICAL 9.8
Firefox — Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 154, Firefox …
2026-08-18
CVE-2026-74937
HIGH 8.8
Firefox — Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1…
2026-08-18
CVE-2026-74938
CRITICAL 9.1
Firefox — Mitigation bypass in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Firefox ESR 15…
2026-08-18
CVE-2026-74939
HIGH 8.8
Firefox — Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 154, Firefox ES…
2026-08-18
CVE-2026-74940
CRITICAL 9.8
Firefox — Use-after-free in the Graphics: Text component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.3…
2026-08-18
CVE-2026-74941
HIGH 8.8
Firefox — Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 154, Fire…
2026-08-18
CVE-2026-74942
HIGH 8.8
Firefox — Privilege escalation in the Remote Settings Client component. This vulnerability was fixed in Firefox 154, Fir…
2026-08-18
CVE-2026-74943
CRITICAL 9.8
Firefox — Use-after-free in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 1…
2026-08-18
CVE-2026-74944
CRITICAL 9.8
Firefox — Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 154, Firefox ESR 140…
2026-08-18
CVE-2026-74945
MEDIUM 6.5
Firefox — Information disclosure in the Graphics: Text component. This vulnerability was fixed in Firefox 154, Firefox E…
2026-08-18
CVE-2026-74946
HIGH 8.8
Firefox — Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnera…
2026-08-18
CVE-2026-74947
HIGH 8.8
Firefox — Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox…
2026-08-18
CVE-2026-74948
MEDIUM 6.5
Firefox — Information disclosure in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 115…
2026-08-18
CVE-2026-74949
HIGH 8.8
Firefox — Privilege escalation due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed i…
2026-08-18
CVE-2026-74950
HIGH 8.8
Firefox — Privilege escalation in the Downloads API component. This vulnerability was fixed in Firefox 154, Firefox ESR …
2026-08-18
CVE-2026-74951
MEDIUM 6.5
Firefox — Clickjacking issue in Firefox for Android. This vulnerability was fixed in Firefox 154.
2026-08-18
CVE-2026-74952
HIGH 8.8
Firefox — Privilege escalation in the Application Update component. This vulnerability was fixed in Firefox 154 and Thun…
2026-08-18
CVE-2026-74953
HIGH 8.8
Firefox — Privilege escalation in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefo…
2026-08-18
CVE-2026-74954
HIGH 7.5
Firefox — Information disclosure due to side-channel in the Storage: Cache API component. This vulnerability was fixed i…
2026-08-18
CVE-2026-74955
HIGH 8.8
Firefox — Privilege escalation in the Request Handling component. This vulnerability was fixed in Firefox 154, Firefox E…
2026-08-18
CVE-2026-74956
CRITICAL 9.1
Firefox — Same-origin policy bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 154, …
2026-08-18
CVE-2026-74957
HIGH 8.1
Firefox — Mitigation bypass in the Safe Browsing component. This vulnerability was fixed in Firefox 154, Firefox ESR 140…
2026-08-18
CVE-2026-74958
HIGH 7.5
Firefox — Information disclosure in the WebRTC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1…
2026-08-18
CVE-2026-74959
CRITICAL 9.1
Firefox — Mitigation bypass in the Storage: Cache API component. This vulnerability was fixed in Firefox 154, Firefox ES…
2026-08-18
CVE-2026-74960
HIGH 8.1
Firefox — Site isolation issue in the WebExtensions component. This vulnerability was fixed in Firefox 154, Firefox ESR …
2026-08-18
CVE-2026-74961
CRITICAL 9.1
Firefox — Side-channel in the Web Audio component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thund…
2026-08-18
CVE-2026-74962
HIGH 8.1
Firefox — Site isolation issue in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefo…
2026-08-18
CVE-2026-74963
MEDIUM 5.4
Firefox — Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, F…
2026-08-18
CVE-2026-74964
CRITICAL 9.8
Firefox — Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, F…
2026-08-18
CVE-2026-74965
HIGH 8.8
Firefox — Privilege escalation in the Shell Integration component. This vulnerability was fixed in Firefox 154, Firefox …
2026-08-18
CVE-2026-74966
HIGH 7.5
Firefox — Information disclosure in the Form Autofill component. This vulnerability was fixed in Firefox 154, Firefox ES…
2026-08-18
CVE-2026-74967
MEDIUM 5.4
Firefox — Same-origin policy bypass in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 154,…
2026-08-18
CVE-2026-74968
MEDIUM 5.4
Firefox — Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 154, Firefo…
2026-08-18
CVE-2026-74969
HIGH 8.8
Firefox — Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 154, Firefox E…
2026-08-18
CVE-2026-74970
MEDIUM 5.4
Firefox — Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1…
2026-08-18
CVE-2026-74971
MEDIUM 4.3
Firefox — Information disclosure in the DOM: UI Events & Focus Handling component. This vulnerability was fixed in Firef…
2026-08-18
CVE-2026-74972
MEDIUM 4.3
Firefox — Information disclosure in the DOM: Push Subscriptions component. This vulnerability was fixed in Firefox 154, …
2026-08-18
CVE-2026-74973
MEDIUM 4.2
Firefox — Race condition, use-after-free in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox…
2026-08-18
CVE-2026-74974
MEDIUM 5.4
Firefox — Same-origin policy bypass in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Fi…
2026-08-18
CVE-2026-74975
MEDIUM 5.4
Firefox — Spoofing issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Firefox 154.
2026-08-18
CVE-2026-74976
MEDIUM 6.5
Firefox — JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 154, Firef…
2026-08-18
CVE-2026-74977
HIGH 7.5
Firefox — Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Th…
2026-08-18
CVE-2026-74978
HIGH 8.1
Firefox — Clickjacking issue in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Th…
2026-08-18
CVE-2026-74979
CRITICAL 9.8
Firefox — Mitigation bypass in the Add-ons Manager component. This vulnerability was fixed in Firefox 154, Firefox ESR 1…
2026-08-18
CVE-2026-74980
MEDIUM 6.5
Firefox — Clickjacking issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Firefox …
2026-08-18
CVE-2026-74981
HIGH 8.1
Firefox — Site isolation issue in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 154, Fi…
2026-08-18
CVE-2026-74982
HIGH 7.5
Firefox — Denial-of-service in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thu…
2026-08-18
CVE-2026-74983
HIGH 8.1
Firefox — Mitigation bypass in the Data Loss Prevention component. This vulnerability was fixed in Firefox 154, Firefox …
2026-08-18
CVE-2026-74984
MEDIUM 6.8
Firefox — Race condition in the JavaScript Engine component. This vulnerability was fixed in Firefox 154, Firefox ESR 15…
2026-08-18
CVE-2026-74985
CRITICAL 9.8
Firefox — Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 154, Firefo…
2026-08-18
CVE-2026-74986
CRITICAL 9.1
Firefox — Site isolation issue in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 154…
2026-08-18
CVE-2026-74987
CRITICAL 9.8
Firefox — Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunderbird 153. Some of th…
2026-08-18
CVE-2026-74988
CRITICAL 9.8
Firefox — Internally found bugs present in Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence…
2026-08-18
CVE-2026-74989
CRITICAL 9.8
Firefox — Internally found bugs present in Thunderbird 153. Some of these bugs showed evidence of memory corruption or a…
2026-08-18
CVE-2026-74990
CRITICAL 9.8
Firefox — Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunderbird 153. Some of th…
2026-08-18
CVE-2026-75874
CRITICAL 10
Firefox — Sandbox escape in the Remote Settings Client component. This vulnerability was fixed in Firefox 154 and Thunde…
2026-08-18
CVE-2026-18809
MEDIUM 6.5
Firefox — Information disclosure in Firefox for Android and Firefox Focus for Android. This vulnerability was fixed in F…
2026-08-04
CVE-2026-14899
HIGH 7.5
Thunderbird — The code to parse MIME headers for display when forwarding a message (if the setting to view all headers was e…
2026-07-22
CVE-2026-16349
CRITICAL 9.8
Firefox — Same-origin policy bypass in the DOM: Navigation component. This vulnerability was fixed in Firefox 153, Firef…
2026-07-21
CVE-2026-16350
CRITICAL 9.8
Firefox — Incorrect boundary conditions in the Audio/Video: cubeb component. This vulnerability was fixed in Firefox 153…
2026-07-21
CVE-2026-16351
CRITICAL 9.8
Firefox — Sandbox escape due to use-after-free in the DOM: Navigation component. This vulnerability was fixed in Firefox…
2026-07-21
CVE-2026-16352
CRITICAL 9.8
Firefox — Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in …
2026-07-21
CVE-2026-16353
CRITICAL 9.8
Firefox — Invalid pointer in the DOM: Bindings (WebIDL) component. This vulnerability was fixed in Firefox 153, Firefox …
2026-07-21
CVE-2026-16354
HIGH 7.5
Firefox — Information disclosure in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 153, Firef…
2026-07-21
CVE-2026-16355
CRITICAL 9.8
Firefox — JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 153, Firef…
2026-07-21
CVE-2026-16356
CRITICAL 9.8
Firefox — Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in …
2026-07-21
CVE-2026-16357
CRITICAL 9.8
Firefox — Incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 153, Firefox …
2026-07-21
CVE-2026-16358
CRITICAL 9.8
Firefox — Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 153, Firefo…
2026-07-21
CVE-2026-16359
CRITICAL 9.1
Firefox — Incorrect boundary conditions in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 153, …
2026-07-21
CVE-2026-16360
CRITICAL 9.8
Firefox — Memory safety bugs present in Firefox ESR 115.37, Firefox ESR 140.12 and Firefox 152. Some of these bugs showe…
2026-07-21
CVE-2026-16361
CRITICAL 9.8
Firefox — Memory safety bugs present in Thunderbird ESR 140.12. Some of these bugs showed evidence of memory corruption …
2026-07-21
CVE-2026-16362
HIGH 8.8
Firefox — Use-after-free in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 153, Firefox ESR …
2026-07-21
CVE-2026-16363
CRITICAL 9.8
Firefox — JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153, Fire…
2026-07-21
CVE-2026-16364
CRITICAL 9.1
Firefox — Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox …
2026-07-21
CVE-2026-16365
HIGH 8.8
Firefox — Privilege escalation in the DOM: Workers component. This vulnerability was fixed in Firefox 153 and Thunderbir…
2026-07-21
CVE-2026-16366
HIGH 8.8
Firefox — Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153 and Thunder…
2026-07-21
CVE-2026-16367
CRITICAL 10
Firefox — Sandbox escape due to invalid pointer in the Disability Access APIs component. This vulnerability was fixed in…
2026-07-21
CVE-2026-16368
CRITICAL 9.8
Firefox — Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefo…
2026-07-21
CVE-2026-16369
CRITICAL 9.8
Firefox — Integer overflow in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153, Firefo…
2026-07-21
CVE-2026-16370
CRITICAL 9.1
Firefox — Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 153 and Thunderbir…
2026-07-21
CVE-2026-16371
HIGH 8.8
Firefox — Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153, Firefox ES…
2026-07-21
CVE-2026-16372
HIGH 8.8
Firefox — Privilege escalation in the DOM: Content Processes component. This vulnerability was fixed in Firefox 153 and …
2026-07-21
CVE-2026-16373
HIGH 7.5
Firefox — Information disclosure in the Privacy component in Firefox for Android. This vulnerability was fixed in Firefo…
2026-07-21
CVE-2026-16374
HIGH 7.5
Firefox — Information disclosure in the Framework component in DevTools. This vulnerability was fixed in Firefox 153, Fi…
2026-07-21
CVE-2026-16375
CRITICAL 9.8
Firefox — Site isolation issue in the Networking: HTTP component. This vulnerability was fixed in Firefox 153, Firefox E…
2026-07-21
CVE-2026-16376
HIGH 7.5
Firefox — Denial-of-service in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 153 and Thunderbi…
2026-07-21
CVE-2026-16377
CRITICAL 9.8
Firefox — Mitigation bypass in the PDF Viewer component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13…
2026-07-21
CVE-2026-16378
HIGH 7.5
Firefox — Other issue in the DOM: Copy & Paste and Drag & Drop component. This vulnerability was fixed in Firefox 153 an…
2026-07-21
CVE-2026-16379
HIGH 8.8
Firefox — Privilege escalation in the DOM: Content Processes component. This vulnerability was fixed in Firefox 153, Fir…
2026-07-21
CVE-2026-16380
CRITICAL 9.1
Firefox — Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153…
2026-07-21
CVE-2026-16381
CRITICAL 9.1
Firefox — Same-origin policy bypass in the Networking: DNS component. This vulnerability was fixed in Firefox 153, Firef…
2026-07-21
CVE-2026-16382
CRITICAL 9.8
Firefox — Mitigation bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 153 and Thund…
2026-07-21
CVE-2026-16383
CRITICAL 9.8
Firefox — Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 153, Firefox ESR 1…
2026-07-21
CVE-2026-16384
HIGH 7.5
Firefox — Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerability was f…
2026-07-21
CVE-2026-16385
HIGH 7.5
Firefox — Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerability was f…
2026-07-21
CVE-2026-16386
HIGH 7.5
Firefox — Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerability was f…
2026-07-21
CVE-2026-16387
CRITICAL 9.8
Firefox — Site isolation issue in the Networking component. This vulnerability was fixed in Firefox 153, Firefox ESR 140…
2026-07-21
CVE-2026-16388
CRITICAL 9.8
Firefox — Sandbox escape in the DOM: Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 1…
2026-07-21
CVE-2026-16389
CRITICAL 9.8
Firefox — Incorrect boundary conditions, integer overflow in the Libraries component in NSS. This vulnerability was fixe…
2026-07-21
CVE-2026-16390
CRITICAL 9.1
Firefox — Mitigation bypass in the Enterprise Policies component. This vulnerability was fixed in Firefox 153, Firefox E…
2026-07-21
CVE-2026-16391
HIGH 7.5
Firefox — Information disclosure in the Storage: IndexedDB component. This vulnerability was fixed in Firefox 153, Firef…
2026-07-21
CVE-2026-16392
CRITICAL 9.1
Firefox — JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 153 and Th…
2026-07-21
CVE-2026-16393
CRITICAL 9.1
Firefox — Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 153 a…
2026-07-21
CVE-2026-16394
CRITICAL 9.1
Firefox — Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 153 and Thunderbird …
2026-07-21
CVE-2026-16395
CRITICAL 9.8
Firefox — Integer overflow in the Audio/Video component. This vulnerability was fixed in Firefox 153 and Thunderbird 153…
2026-07-21
CVE-2026-16396
HIGH 8.8
Firefox — Privilege escalation in WebExtensions. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunde…
2026-07-21
CVE-2026-16397
MEDIUM 6.5
Firefox — Clickjacking issue in the WebExtensions component in Firefox for Android. This vulnerability was fixed in Fire…
2026-07-21
CVE-2026-16398
HIGH 7.5
Firefox — Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 153 and Thunderbird 15…
2026-07-21
CVE-2026-16399
HIGH 7.5
Firefox — Site isolation issue in the DOM: Navigation component. This vulnerability was fixed in Firefox 153 and Thunder…
2026-07-21
CVE-2026-16400
HIGH 7.5
Firefox — Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 153 and Thunder…
2026-07-21
CVE-2026-16401
HIGH 8.8
Firefox — Privilege escalation in the Data Loss Prevention component. This vulnerability was fixed in Firefox 153 and Th…
2026-07-21
CVE-2026-16402
CRITICAL 9.8
Firefox — Integer overflow in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 153 and Thunderb…
2026-07-21
CVE-2026-16403
MEDIUM 6.5
Firefox — Spoofing issue in the Address Bar component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
2026-07-21
CVE-2026-16404
HIGH 7.4
Firefox — Spoofing issue in Firefox for Android. This vulnerability was fixed in Firefox 153.
2026-07-21
CVE-2026-16405
HIGH 7.5
Firefox — Information disclosure in the Networking: WebSockets component. This vulnerability was fixed in Firefox 153, F…
2026-07-21
CVE-2026-16406
CRITICAL 9.1
Firefox — Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153…
2026-07-21
CVE-2026-16407
CRITICAL 9.8
Firefox — Mitigation bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 153 and Thund…
2026-07-21
CVE-2026-16408
CRITICAL 9.8
Firefox — Integer overflow in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 153 and Thund…
2026-07-21
CVE-2026-16409
HIGH 7.5
Firefox — Invalid pointer in the Security: PSM component. This vulnerability was fixed in Firefox 153 and Thunderbird 15…
2026-07-21
CVE-2026-16410
CRITICAL 9.8
Firefox — JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 153 and Th…
2026-07-21
CVE-2026-16411
CRITICAL 9.8
Firefox — Memory safety bugs present in Firefox 152. Some of these bugs showed evidence of memory corruption and we pres…
2026-07-21
CVE-2026-16412
CRITICAL 9.8
Firefox — Memory safety bugs present in Firefox ESR 140.12 and Firefox 152. Some of these bugs showed evidence of memory…
2026-07-21
CVE-2026-15718
MEDIUM 4.3
Firefox — We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing …
2026-07-14
CVE-2026-15719
MEDIUM 5.4
Firefox — We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing …
2026-07-14
CVE-2026-14906
MEDIUM 5.3
Firefox For Ios — Pages with malicious titles could potentially allow saved PDF content to overwrite PDF files or bundled conten…
2026-07-13