|
2301
|
10.0 |
CRITICAL
Network
|
mozilla
|
firefox thunderbird
|
Sandbox escape due to incorrect boundary conditions in the Telemetry component in External Software. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 14…
|
NVD-CWE-noinfo CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2026-2776
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2302
|
10.0 |
CRITICAL
Network
|
mozilla
|
firefox thunderbird
|
Escape de sandbox debido a condiciones de contorno incorrectas en el componente de Telemetría en el Software Externo. Esta vulnerabilidad afecta a Firefox < 148, Firefox ESR < 115.33, Firefox E…
|
NVD-CWE-noinfo CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2026-2776
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2303
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox thunderbird
|
Mitigation bypass in the DOM: HTML Parser component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
|
NVD-CWE-noinfo CWE-288
Authentication Bypass Using an Alternate Path or Channel
|
CVE-2026-2775
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2304
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox thunderbird
|
Omisión de mitigación en el DOM: componente del analizador HTML. Esta vulnerabilidad afecta a Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 140.8, Thunderbird < 148 y Thunderbird <…
|
NVD-CWE-noinfo CWE-288
Authentication Bypass Using an Alternate Path or Channel
|
CVE-2026-2775
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2305
|
8.8 |
HIGH
Network
|
mozilla
|
firefox thunderbird
|
Integer overflow in the Audio/Video component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2026-2774
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2306
|
8.8 |
HIGH
Network
|
mozilla
|
firefox thunderbird
|
Desbordamiento de entero en el componente de Audio/Video. Esta vulnerabilidad afecta a Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 140.8, Thunderbird < 148, y Thunderbird < 140.…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2026-2774
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2307
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox thunderbird
|
Incorrect boundary conditions in the Web Audio component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
|
NVD-CWE-noinfo CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2026-2773
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2308
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox thunderbird
|
Condiciones de contorno incorrectas en el componente Web Audio. Esta vulnerabilidad afecta a Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 140.8, Thunderbird < 148, y Thunderbird <…
|
NVD-CWE-noinfo CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2026-2773
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2309
|
8.8 |
HIGH
Network
|
mozilla
|
firefox thunderbird
|
Use-after-free in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
|
CWE-416
Use After Free
|
CVE-2026-2772
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2310
|
8.8 |
HIGH
Network
|
mozilla
|
firefox thunderbird
|
Uso después de liberación en el componente de Audio/Video: Reproducción. Esta vulnerabilidad afecta a Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 140.8, Thunderbird < 148, y Thunde…
|
CWE-416
Use After Free
|
CVE-2026-2772
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|