|
2231
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
Memory safety bugs present in Firefox 148.0.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary …
|
CWE-119 CWE-416
Incorrect Access of Indexable Resource ('Range Error') Use After Free
|
CVE-2026-3847
|
2026-04-14 00:17 |
2026-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2232
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
Errores de seguridad de memoria presentes en Firefox 148.0.2. Algunos de estos errores mostraron evidencia de corrupción de memoria y presumimos que con suficiente esfuerzo algunos de estos podrían h…
|
CWE-119 CWE-416
Incorrect Access of Indexable Resource ('Range Error') Use After Free
|
CVE-2026-3847
|
2026-04-14 00:17 |
2026-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2233
|
6.5 |
MEDIUM
Network
|
mozilla
|
firefox
|
Same-origin policy bypass in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 148.0.2.
|
CWE-346
Origin Validation Error
|
CVE-2026-3846
|
2026-04-14 00:17 |
2026-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2234
|
6.5 |
MEDIUM
Network
|
mozilla
|
firefox
|
Elusión de la política del mismo origen en el componente de análisis y cálculo de CSS. Esta vulnerabilidad afecta a Firefox < 148.0.2.
|
CWE-346
Origin Validation Error
|
CVE-2026-3846
|
2026-04-14 00:17 |
2026-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2235
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
Heap buffer overflow in the Audio/Video: Playback component in Firefox for Android. This vulnerability was fixed in Firefox 148.0.2.
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-3845
|
2026-04-14 00:17 |
2026-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2236
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
Desbordamiento de búfer de montón en el componente Audio/Video: Reproducción en Firefox para Android. Esta vulnerabilidad afecta a Firefox < 148.0.2.
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-3845
|
2026-04-14 00:17 |
2026-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2237
|
4.3 |
MEDIUM
Network
|
-
|
-
|
Malicious scripts could display attacker-controlled web content under spoofed domains in Focus for iOS by stalling a _self navigation to an invalid port and triggering an iframe redirect, causing the…
|
CWE-451
User Interface (UI) Misrepresentation of Critical Information
|
CVE-2026-2919
|
2026-04-14 00:17 |
2026-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2238
|
4.3 |
MEDIUM
Network
|
-
|
-
|
Scripts maliciosos podrían mostrar contenido web controlado por el atacante bajo dominios falsificados en Focus para iOS al detener una navegación _self a un puerto inválido y al activar una redirecc…
|
CWE-451
User Interface (UI) Misrepresentation of Critical Information
|
CVE-2026-2919
|
2026-04-14 00:17 |
2026-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2239
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox thunderbird
|
Memory safety bugs present in Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited t…
|
CWE-787
Out-of-bounds Write
|
CVE-2026-2807
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2240
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox thunderbird
|
Hay errores de seguridad de memoria en Firefox 147 y Thunderbird 147. Algunos de estos errores mostraron evidencia de corrupción de memoria y presumimos que, con suficiente esfuerzo, algunos de estos…
|
CWE-787
Out-of-bounds Write
|
CVE-2026-2807
|
2026-04-14 00:17 |
2026-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|