|
2271
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox thunderbird
|
Mitigation bypass in the Networking: Cache component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
|
NVD-CWE-noinfo CWE-288
Authentication Bypass Using an Alternate Path or Channel
|
CVE-2026-2791
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2272
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox thunderbird
|
Elusión de mitigación en el componente de Redes: Caché. Esta vulnerabilidad afecta a Firefox < 148, Firefox ESR < 140.8, Thunderbird < 148 y Thunderbird < 140.8.
|
NVD-CWE-noinfo CWE-288
Authentication Bypass Using an Alternate Path or Channel
|
CVE-2026-2791
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2273
|
8.8 |
HIGH
Network
|
mozilla
|
firefox thunderbird
|
Same-origin policy bypass in the Networking: JAR component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
|
NVD-CWE-noinfo CWE-346
Origin Validation Error
|
CVE-2026-2790
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2274
|
8.8 |
HIGH
Network
|
mozilla
|
firefox thunderbird
|
Elusión de la política del mismo origen en el componente de Redes: JAR. Esta vulnerabilidad afecta a Firefox < 148, Firefox ESR < 140.8, Thunderbird < 148, y Thunderbird < 140.8.
|
NVD-CWE-noinfo CWE-346
Origin Validation Error
|
CVE-2026-2790
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2275
|
8.8 |
HIGH
Network
|
mozilla
|
firefox thunderbird
|
Use-after-free in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
|
CWE-416
Use After Free
|
CVE-2026-2789
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2276
|
8.8 |
HIGH
Network
|
mozilla
|
firefox thunderbird
|
Uso después de liberación en el componente Graphics: ImageLib. Esta vulnerabilidad afecta a Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 140.8, Thunderbird < 148, y Thunderbird <…
|
CWE-416
Use After Free
|
CVE-2026-2789
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2277
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox thunderbird
|
Incorrect boundary conditions in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
|
NVD-CWE-noinfo CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2026-2788
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2278
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox thunderbird
|
Condiciones de contorno incorrectas en el componente Audio/Video: GMP. Esta vulnerabilidad afecta a Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 140.8, Thunderbird < 148, y Thunderb…
|
NVD-CWE-noinfo CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2026-2788
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2279
|
8.8 |
HIGH
Network
|
mozilla
|
firefox thunderbird
|
Use-after-free in the DOM: Window and Location component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
|
CWE-416
Use After Free
|
CVE-2026-2787
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2280
|
8.8 |
HIGH
Network
|
mozilla
|
firefox thunderbird
|
Uso después de liberación en el DOM: componente Window y Location. Esta vulnerabilidad afecta a Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 140.8, Thunderbird < 148, y Thunderbird …
|
CWE-416
Use After Free
|
CVE-2026-2787
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|