Common Vulnerabilities and Exposures (CVE)

CVE-2026-2807

Feb 24, 2026 17:30:46 UTC

Memory safety bugs present in Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability ...

CVE-2026-2806

Feb 24, 2026 17:30:46 UTC

Uninitialized memory in the Graphics: Text component. This vulnerability affects Firefox < 148 and Thunderbird < 148.

CVE-2026-2805

Feb 24, 2026 17:30:45 UTC

Invalid pointer in the DOM: Core & HTML component. This vulnerability affects Firefox < 148 and Thunderbird < 148.

CVE-2026-2804

Feb 24, 2026 17:30:44 UTC

Use-after-free in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148 and Thunderbird < 148.

CVE-2026-2803

Feb 24, 2026 17:30:44 UTC

Information disclosure, mitigation bypass in the Settings UI component. This vulnerability affects Firefox < 148 and Thunderbird < 148.

CVE-2026-2802

Feb 24, 2026 17:30:44 UTC

Race condition in the JavaScript: GC component. This vulnerability affects Firefox < 148 and Thunderbird < 148.

CVE-2026-2801

Feb 24, 2026 17:30:43 UTC

Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148 and Thunderbird < 148.

CVE-2026-2800

Feb 24, 2026 17:30:43 UTC

Spoofing issue in the WebAuthn component in Firefox for Android. This vulnerability affects Firefox < 148 and Thunderbird < 148.

CVE-2026-2799

Feb 24, 2026 17:30:42 UTC

Use-after-free in the DOM: Core & HTML component. This vulnerability affects Firefox < 148 and Thunderbird < 148.

CVE-2026-2798

Feb 24, 2026 17:30:42 UTC

Use-after-free in the DOM: Core & HTML component. This vulnerability affects Firefox < 148 and Thunderbird < 148.

CVE-2026-2797

Feb 24, 2026 17:30:42 UTC

Use-after-free in the JavaScript: GC component. This vulnerability affects Firefox < 148 and Thunderbird < 148.

CVE-2026-2796

Feb 24, 2026 17:30:41 UTC

JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148 and Thunderbird < 148.

CVE-2026-2795

Feb 24, 2026 17:30:41 UTC

Use-after-free in the JavaScript: GC component. This vulnerability affects Firefox < 148 and Thunderbird < 148.

CVE-2026-2793

Feb 24, 2026 17:30:40 UTC

Memory safety bugs present in Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could ...

CVE-2026-2792

Feb 24, 2026 17:30:40 UTC

Memory safety bugs present in Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited ...