← Browse

Mozilla

127 CVEs
CVE IDSeverityProduct / summaryPublished
CVE-2026-74934 HIGH 7.5 Firefox — Site isolation issue in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 154, Fire… 2026-08-18 CVE-2026-74935 HIGH 8.8 Firefox — Privilege escalation in the DOM: Networking component. This vulnerability was fixed in Firefox 154, Firefox ES… 2026-08-18 CVE-2026-74936 CRITICAL 9.8 Firefox — Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 154, Firefox … 2026-08-18 CVE-2026-74937 HIGH 8.8 Firefox — Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1… 2026-08-18 CVE-2026-74938 CRITICAL 9.1 Firefox — Mitigation bypass in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Firefox ESR 15… 2026-08-18 CVE-2026-74939 HIGH 8.8 Firefox — Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 154, Firefox ES… 2026-08-18 CVE-2026-74940 CRITICAL 9.8 Firefox — Use-after-free in the Graphics: Text component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.3… 2026-08-18 CVE-2026-74941 HIGH 8.8 Firefox — Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 154, Fire… 2026-08-18 CVE-2026-74942 HIGH 8.8 Firefox — Privilege escalation in the Remote Settings Client component. This vulnerability was fixed in Firefox 154, Fir… 2026-08-18 CVE-2026-74943 CRITICAL 9.8 Firefox — Use-after-free in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 1… 2026-08-18 CVE-2026-74944 CRITICAL 9.8 Firefox — Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 154, Firefox ESR 140… 2026-08-18 CVE-2026-74945 MEDIUM 6.5 Firefox — Information disclosure in the Graphics: Text component. This vulnerability was fixed in Firefox 154, Firefox E… 2026-08-18 CVE-2026-74946 HIGH 8.8 Firefox — Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnera… 2026-08-18 CVE-2026-74947 HIGH 8.8 Firefox — Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox… 2026-08-18 CVE-2026-74948 MEDIUM 6.5 Firefox — Information disclosure in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 115… 2026-08-18 CVE-2026-74949 HIGH 8.8 Firefox — Privilege escalation due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed i… 2026-08-18 CVE-2026-74950 HIGH 8.8 Firefox — Privilege escalation in the Downloads API component. This vulnerability was fixed in Firefox 154, Firefox ESR … 2026-08-18 CVE-2026-74951 MEDIUM 6.5 Firefox — Clickjacking issue in Firefox for Android. This vulnerability was fixed in Firefox 154. 2026-08-18 CVE-2026-74952 HIGH 8.8 Firefox — Privilege escalation in the Application Update component. This vulnerability was fixed in Firefox 154 and Thun… 2026-08-18 CVE-2026-74953 HIGH 8.8 Firefox — Privilege escalation in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefo… 2026-08-18 CVE-2026-74954 HIGH 7.5 Firefox — Information disclosure due to side-channel in the Storage: Cache API component. This vulnerability was fixed i… 2026-08-18 CVE-2026-74955 HIGH 8.8 Firefox — Privilege escalation in the Request Handling component. This vulnerability was fixed in Firefox 154, Firefox E… 2026-08-18 CVE-2026-74956 CRITICAL 9.1 Firefox — Same-origin policy bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 154, … 2026-08-18 CVE-2026-74957 HIGH 8.1 Firefox — Mitigation bypass in the Safe Browsing component. This vulnerability was fixed in Firefox 154, Firefox ESR 140… 2026-08-18 CVE-2026-74958 HIGH 7.5 Firefox — Information disclosure in the WebRTC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1… 2026-08-18 CVE-2026-74959 CRITICAL 9.1 Firefox — Mitigation bypass in the Storage: Cache API component. This vulnerability was fixed in Firefox 154, Firefox ES… 2026-08-18 CVE-2026-74960 HIGH 8.1 Firefox — Site isolation issue in the WebExtensions component. This vulnerability was fixed in Firefox 154, Firefox ESR … 2026-08-18 CVE-2026-74961 CRITICAL 9.1 Firefox — Side-channel in the Web Audio component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thund… 2026-08-18 CVE-2026-74962 HIGH 8.1 Firefox — Site isolation issue in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefo… 2026-08-18 CVE-2026-74963 MEDIUM 5.4 Firefox — Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, F… 2026-08-18 CVE-2026-74964 CRITICAL 9.8 Firefox — Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, F… 2026-08-18 CVE-2026-74965 HIGH 8.8 Firefox — Privilege escalation in the Shell Integration component. This vulnerability was fixed in Firefox 154, Firefox … 2026-08-18 CVE-2026-74966 HIGH 7.5 Firefox — Information disclosure in the Form Autofill component. This vulnerability was fixed in Firefox 154, Firefox ES… 2026-08-18 CVE-2026-74967 MEDIUM 5.4 Firefox — Same-origin policy bypass in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 154,… 2026-08-18 CVE-2026-74968 MEDIUM 5.4 Firefox — Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 154, Firefo… 2026-08-18 CVE-2026-74969 HIGH 8.8 Firefox — Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 154, Firefox E… 2026-08-18 CVE-2026-74970 MEDIUM 5.4 Firefox — Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1… 2026-08-18 CVE-2026-74971 MEDIUM 4.3 Firefox — Information disclosure in the DOM: UI Events & Focus Handling component. This vulnerability was fixed in Firef… 2026-08-18 CVE-2026-74972 MEDIUM 4.3 Firefox — Information disclosure in the DOM: Push Subscriptions component. This vulnerability was fixed in Firefox 154, … 2026-08-18 CVE-2026-74973 MEDIUM 4.2 Firefox — Race condition, use-after-free in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox… 2026-08-18 CVE-2026-74974 MEDIUM 5.4 Firefox — Same-origin policy bypass in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Fi… 2026-08-18 CVE-2026-74975 MEDIUM 5.4 Firefox — Spoofing issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Firefox 154. 2026-08-18 CVE-2026-74976 MEDIUM 6.5 Firefox — JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 154, Firef… 2026-08-18 CVE-2026-74977 HIGH 7.5 Firefox — Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Th… 2026-08-18 CVE-2026-74978 HIGH 8.1 Firefox — Clickjacking issue in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Th… 2026-08-18 CVE-2026-74979 CRITICAL 9.8 Firefox — Mitigation bypass in the Add-ons Manager component. This vulnerability was fixed in Firefox 154, Firefox ESR 1… 2026-08-18 CVE-2026-74980 MEDIUM 6.5 Firefox — Clickjacking issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Firefox … 2026-08-18 CVE-2026-74981 HIGH 8.1 Firefox — Site isolation issue in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 154, Fi… 2026-08-18 CVE-2026-74982 HIGH 7.5 Firefox — Denial-of-service in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thu… 2026-08-18 CVE-2026-74983 HIGH 8.1 Firefox — Mitigation bypass in the Data Loss Prevention component. This vulnerability was fixed in Firefox 154, Firefox … 2026-08-18 CVE-2026-74984 MEDIUM 6.8 Firefox — Race condition in the JavaScript Engine component. This vulnerability was fixed in Firefox 154, Firefox ESR 15… 2026-08-18 CVE-2026-74985 CRITICAL 9.8 Firefox — Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 154, Firefo… 2026-08-18 CVE-2026-74986 CRITICAL 9.1 Firefox — Site isolation issue in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 154… 2026-08-18 CVE-2026-74987 CRITICAL 9.8 Firefox — Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunderbird 153. Some of th… 2026-08-18 CVE-2026-74988 CRITICAL 9.8 Firefox — Internally found bugs present in Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence… 2026-08-18 CVE-2026-74989 CRITICAL 9.8 Firefox — Internally found bugs present in Thunderbird 153. Some of these bugs showed evidence of memory corruption or a… 2026-08-18 CVE-2026-74990 CRITICAL 9.8 Firefox — Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunderbird 153. Some of th… 2026-08-18 CVE-2026-75874 CRITICAL 10 Firefox — Sandbox escape in the Remote Settings Client component. This vulnerability was fixed in Firefox 154 and Thunde… 2026-08-18 CVE-2026-18809 MEDIUM 6.5 Firefox — Information disclosure in Firefox for Android and Firefox Focus for Android. This vulnerability was fixed in F… 2026-08-04 CVE-2026-14899 HIGH 7.5 Thunderbird — The code to parse MIME headers for display when forwarding a message (if the setting to view all headers was e… 2026-07-22 CVE-2026-16349 CRITICAL 9.8 Firefox — Same-origin policy bypass in the DOM: Navigation component. This vulnerability was fixed in Firefox 153, Firef… 2026-07-21 CVE-2026-16350 CRITICAL 9.8 Firefox — Incorrect boundary conditions in the Audio/Video: cubeb component. This vulnerability was fixed in Firefox 153… 2026-07-21 CVE-2026-16351 CRITICAL 9.8 Firefox — Sandbox escape due to use-after-free in the DOM: Navigation component. This vulnerability was fixed in Firefox… 2026-07-21 CVE-2026-16352 CRITICAL 9.8 Firefox — Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in … 2026-07-21 CVE-2026-16353 CRITICAL 9.8 Firefox — Invalid pointer in the DOM: Bindings (WebIDL) component. This vulnerability was fixed in Firefox 153, Firefox … 2026-07-21 CVE-2026-16354 HIGH 7.5 Firefox — Information disclosure in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 153, Firef… 2026-07-21 CVE-2026-16355 CRITICAL 9.8 Firefox — JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 153, Firef… 2026-07-21 CVE-2026-16356 CRITICAL 9.8 Firefox — Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in … 2026-07-21 CVE-2026-16357 CRITICAL 9.8 Firefox — Incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 153, Firefox … 2026-07-21 CVE-2026-16358 CRITICAL 9.8 Firefox — Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 153, Firefo… 2026-07-21 CVE-2026-16359 CRITICAL 9.1 Firefox — Incorrect boundary conditions in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 153, … 2026-07-21 CVE-2026-16360 CRITICAL 9.8 Firefox — Memory safety bugs present in Firefox ESR 115.37, Firefox ESR 140.12 and Firefox 152. Some of these bugs showe… 2026-07-21 CVE-2026-16361 CRITICAL 9.8 Firefox — Memory safety bugs present in Thunderbird ESR 140.12. Some of these bugs showed evidence of memory corruption … 2026-07-21 CVE-2026-16362 HIGH 8.8 Firefox — Use-after-free in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 153, Firefox ESR … 2026-07-21 CVE-2026-16363 CRITICAL 9.8 Firefox — JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153, Fire… 2026-07-21 CVE-2026-16364 CRITICAL 9.1 Firefox — Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox … 2026-07-21 CVE-2026-16365 HIGH 8.8 Firefox — Privilege escalation in the DOM: Workers component. This vulnerability was fixed in Firefox 153 and Thunderbir… 2026-07-21 CVE-2026-16366 HIGH 8.8 Firefox — Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153 and Thunder… 2026-07-21 CVE-2026-16367 CRITICAL 10 Firefox — Sandbox escape due to invalid pointer in the Disability Access APIs component. This vulnerability was fixed in… 2026-07-21 CVE-2026-16368 CRITICAL 9.8 Firefox — Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefo… 2026-07-21 CVE-2026-16369 CRITICAL 9.8 Firefox — Integer overflow in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153, Firefo… 2026-07-21 CVE-2026-16370 CRITICAL 9.1 Firefox — Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 153 and Thunderbir… 2026-07-21 CVE-2026-16371 HIGH 8.8 Firefox — Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153, Firefox ES… 2026-07-21 CVE-2026-16372 HIGH 8.8 Firefox — Privilege escalation in the DOM: Content Processes component. This vulnerability was fixed in Firefox 153 and … 2026-07-21 CVE-2026-16373 HIGH 7.5 Firefox — Information disclosure in the Privacy component in Firefox for Android. This vulnerability was fixed in Firefo… 2026-07-21 CVE-2026-16374 HIGH 7.5 Firefox — Information disclosure in the Framework component in DevTools. This vulnerability was fixed in Firefox 153, Fi… 2026-07-21 CVE-2026-16375 CRITICAL 9.8 Firefox — Site isolation issue in the Networking: HTTP component. This vulnerability was fixed in Firefox 153, Firefox E… 2026-07-21 CVE-2026-16376 HIGH 7.5 Firefox — Denial-of-service in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 153 and Thunderbi… 2026-07-21 CVE-2026-16377 CRITICAL 9.8 Firefox — Mitigation bypass in the PDF Viewer component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13… 2026-07-21 CVE-2026-16378 HIGH 7.5 Firefox — Other issue in the DOM: Copy & Paste and Drag & Drop component. This vulnerability was fixed in Firefox 153 an… 2026-07-21 CVE-2026-16379 HIGH 8.8 Firefox — Privilege escalation in the DOM: Content Processes component. This vulnerability was fixed in Firefox 153, Fir… 2026-07-21 CVE-2026-16380 CRITICAL 9.1 Firefox — Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153… 2026-07-21 CVE-2026-16381 CRITICAL 9.1 Firefox — Same-origin policy bypass in the Networking: DNS component. This vulnerability was fixed in Firefox 153, Firef… 2026-07-21 CVE-2026-16382 CRITICAL 9.8 Firefox — Mitigation bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 153 and Thund… 2026-07-21 CVE-2026-16383 CRITICAL 9.8 Firefox — Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 153, Firefox ESR 1… 2026-07-21 CVE-2026-16384 HIGH 7.5 Firefox — Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerability was f… 2026-07-21 CVE-2026-16385 HIGH 7.5 Firefox — Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerability was f… 2026-07-21 CVE-2026-16386 HIGH 7.5 Firefox — Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerability was f… 2026-07-21 CVE-2026-16387 CRITICAL 9.8 Firefox — Site isolation issue in the Networking component. This vulnerability was fixed in Firefox 153, Firefox ESR 140… 2026-07-21 CVE-2026-16388 CRITICAL 9.8 Firefox — Sandbox escape in the DOM: Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 1… 2026-07-21 CVE-2026-16389 CRITICAL 9.8 Firefox — Incorrect boundary conditions, integer overflow in the Libraries component in NSS. This vulnerability was fixe… 2026-07-21 CVE-2026-16390 CRITICAL 9.1 Firefox — Mitigation bypass in the Enterprise Policies component. This vulnerability was fixed in Firefox 153, Firefox E… 2026-07-21 CVE-2026-16391 HIGH 7.5 Firefox — Information disclosure in the Storage: IndexedDB component. This vulnerability was fixed in Firefox 153, Firef… 2026-07-21 CVE-2026-16392 CRITICAL 9.1 Firefox — JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 153 and Th… 2026-07-21 CVE-2026-16393 CRITICAL 9.1 Firefox — Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 153 a… 2026-07-21 CVE-2026-16394 CRITICAL 9.1 Firefox — Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 153 and Thunderbird … 2026-07-21 CVE-2026-16395 CRITICAL 9.8 Firefox — Integer overflow in the Audio/Video component. This vulnerability was fixed in Firefox 153 and Thunderbird 153… 2026-07-21 CVE-2026-16396 HIGH 8.8 Firefox — Privilege escalation in WebExtensions. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunde… 2026-07-21 CVE-2026-16397 MEDIUM 6.5 Firefox — Clickjacking issue in the WebExtensions component in Firefox for Android. This vulnerability was fixed in Fire… 2026-07-21 CVE-2026-16398 HIGH 7.5 Firefox — Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 153 and Thunderbird 15… 2026-07-21 CVE-2026-16399 HIGH 7.5 Firefox — Site isolation issue in the DOM: Navigation component. This vulnerability was fixed in Firefox 153 and Thunder… 2026-07-21 CVE-2026-16400 HIGH 7.5 Firefox — Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 153 and Thunder… 2026-07-21 CVE-2026-16401 HIGH 8.8 Firefox — Privilege escalation in the Data Loss Prevention component. This vulnerability was fixed in Firefox 153 and Th… 2026-07-21 CVE-2026-16402 CRITICAL 9.8 Firefox — Integer overflow in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 153 and Thunderb… 2026-07-21 CVE-2026-16403 MEDIUM 6.5 Firefox — Spoofing issue in the Address Bar component. This vulnerability was fixed in Firefox 153 and Thunderbird 153. 2026-07-21 CVE-2026-16404 HIGH 7.4 Firefox — Spoofing issue in Firefox for Android. This vulnerability was fixed in Firefox 153. 2026-07-21 CVE-2026-16405 HIGH 7.5 Firefox — Information disclosure in the Networking: WebSockets component. This vulnerability was fixed in Firefox 153, F… 2026-07-21 CVE-2026-16406 CRITICAL 9.1 Firefox — Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153… 2026-07-21 CVE-2026-16407 CRITICAL 9.8 Firefox — Mitigation bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 153 and Thund… 2026-07-21 CVE-2026-16408 CRITICAL 9.8 Firefox — Integer overflow in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 153 and Thund… 2026-07-21 CVE-2026-16409 HIGH 7.5 Firefox — Invalid pointer in the Security: PSM component. This vulnerability was fixed in Firefox 153 and Thunderbird 15… 2026-07-21 CVE-2026-16410 CRITICAL 9.8 Firefox — JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 153 and Th… 2026-07-21 CVE-2026-16411 CRITICAL 9.8 Firefox — Memory safety bugs present in Firefox 152. Some of these bugs showed evidence of memory corruption and we pres… 2026-07-21 CVE-2026-16412 CRITICAL 9.8 Firefox — Memory safety bugs present in Firefox ESR 140.12 and Firefox 152. Some of these bugs showed evidence of memory… 2026-07-21 CVE-2026-15718 MEDIUM 4.3 Firefox — We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing … 2026-07-14 CVE-2026-15719 MEDIUM 5.4 Firefox — We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing … 2026-07-14 CVE-2026-14906 MEDIUM 5.3 Firefox For Ios — Pages with malicious titles could potentially allow saved PDF content to overwrite PDF files or bundled conten… 2026-07-13