|
2361
|
5.3 |
MEDIUM
Network
|
mozilla
|
firefox thunderbird
|
Revelación de información en el componente XML. Esta vulnerabilidad afecta a Firefox < 147 y Thunderbird < 147.
|
CWE-200
Information Exposure
|
CVE-2026-0888
|
2026-04-14 00:17 |
2026-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2362
|
4.3 |
MEDIUM
Network
|
mozilla
|
firefox thunderbird
|
Clickjacking issue, information disclosure in the PDF Viewer component. This vulnerability was fixed in Firefox 147, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.
|
CWE-497
Exposure of Sensitive System Information to an Unauthorized Control Sphere
|
CVE-2026-0887
|
2026-04-14 00:17 |
2026-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2363
|
4.3 |
MEDIUM
Network
|
mozilla
|
firefox thunderbird
|
Problema de clickjacking, revelación de información en el componente Visor de PDF. Esta vulnerabilidad afecta a Firefox < 147, Firefox ESR < 140.7, Thunderbird < 147 y Thunderbird < 140.7.
|
CWE-497
Exposure of Sensitive System Information to an Unauthorized Control Sphere
|
CVE-2026-0887
|
2026-04-14 00:17 |
2026-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2364
|
5.3 |
MEDIUM
Network
|
mozilla
|
firefox thunderbird
|
Incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 147, Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2026-0886
|
2026-04-14 00:17 |
2026-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2365
|
5.3 |
MEDIUM
Network
|
mozilla
|
firefox thunderbird
|
Condiciones de contorno incorrectas en el componente Gráficos. Esta vulnerabilidad afecta a Firefox < 147, Firefox ESR < 115.32, Firefox ESR < 140.7, Thunderbird < 147 y Thunderbird < …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2026-0886
|
2026-04-14 00:17 |
2026-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2366
|
6.5 |
MEDIUM
Network
|
mozilla
|
firefox thunderbird
|
Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 147, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.
|
CWE-416
Use After Free
|
CVE-2026-0885
|
2026-04-14 00:17 |
2026-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2367
|
6.5 |
MEDIUM
Network
|
mozilla
|
firefox thunderbird
|
Uso después de liberación en el componente JavaScript: GC. Esta vulnerabilidad afecta a Firefox < 147, Firefox ESR < 140.7, Thunderbird < 147, y Thunderbird < 140.7.
|
CWE-416
Use After Free
|
CVE-2026-0885
|
2026-04-14 00:17 |
2026-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2368
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox thunderbird
|
Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 147, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.
|
CWE-416
Use After Free
|
CVE-2026-0884
|
2026-04-14 00:17 |
2026-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2369
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox thunderbird
|
Uso después de liberación en el componente del motor JavaScript. Esta vulnerabilidad afecta a Firefox < 147, Firefox ESR < 140.7, Thunderbird < 147, y Thunderbird < 140.7.
|
CWE-416
Use After Free
|
CVE-2026-0884
|
2026-04-14 00:17 |
2026-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2370
|
5.3 |
MEDIUM
Network
|
mozilla
|
firefox thunderbird
|
Information disclosure in the Networking component. This vulnerability was fixed in Firefox 147, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.
|
CWE-200
Information Exposure
|
CVE-2026-0883
|
2026-04-14 00:17 |
2026-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|