|
2181
|
7.5 |
HIGH
Network
|
mozilla
|
firefox
|
Incorrect boundary conditions in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird 149, and Thunderbird 140.9.
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2026-4706
|
2026-04-14 00:17 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2182
|
7.5 |
HIGH
Network
|
mozilla
|
firefox
|
Condiciones de contorno incorrectas en el componente Graphics: Canvas2D. Esta vulnerabilidad afecta a Firefox < 149, Firefox ESR < 115.34, Firefox ESR < 140.9, Thunderbird < 149, y Thunde…
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2026-4706
|
2026-04-14 00:17 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2183
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox
|
Undefined behavior in the WebRTC: Signaling component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunderbird 140.9.
|
NVD-CWE-noinfo CWE-758
Reliance on Undefined, Unspecified, or Implementation-Defined Behavior
|
CVE-2026-4705
|
2026-04-14 00:17 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2184
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox
|
Comportamiento indefinido en el componente de señalización de WebRTC. Esta vulnerabilidad afecta a Firefox < 149, Firefox ESR < 140.9, Thunderbird < 149, y Thunderbird < 140.9.
|
NVD-CWE-noinfo CWE-758
Reliance on Undefined, Unspecified, or Implementation-Defined Behavior
|
CVE-2026-4705
|
2026-04-14 00:17 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2185
|
7.5 |
HIGH
Network
|
mozilla
|
firefox
|
Denial-of-service in the WebRTC: Signaling component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunderbird 140.9.
|
NVD-CWE-noinfo CWE-400
Uncontrolled Resource Consumption
|
CVE-2026-4704
|
2026-04-14 00:17 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2186
|
7.5 |
HIGH
Network
|
mozilla
|
firefox
|
Denegación de servicio en el componente de señalización de WebRTC. Esta vulnerabilidad afecta a Firefox < 149, Firefox ESR < 140.9, Thunderbird < 149 y Thunderbird < 140.9.
|
NVD-CWE-noinfo CWE-400
Uncontrolled Resource Consumption
|
CVE-2026-4704
|
2026-04-14 00:17 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2187
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox
|
JIT miscompilation in the JavaScript Engine component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunderbird 140.9.
|
CWE-843
Type Confusion
|
CVE-2026-4702
|
2026-04-14 00:17 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2188
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox
|
Compilación JIT errónea en el componente del motor JavaScript. Esta vulnerabilidad afecta a Firefox < 149, Firefox ESR < 140.9, Thunderbird < 149, y Thunderbird < 140.9.
|
CWE-843
Type Confusion
|
CVE-2026-4702
|
2026-04-14 00:17 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2189
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox
|
Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunderbird 140.9.
|
CWE-416
Use After Free
|
CVE-2026-4701
|
2026-04-14 00:17 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2190
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox
|
Uso después de liberación en el componente del motor JavaScript. Esta vulnerabilidad afecta a Firefox < 149, Firefox ESR < 140.9, Thunderbird < 149, y Thunderbird < 140.9.
|
CWE-416
Use After Free
|
CVE-2026-4701
|
2026-04-14 00:17 |
2026-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|