Search CVE reports


Toggle filters

571 – 580 of 36932 results

Status is adjusted based on your filters.


CVE-2026-2763

Medium priority
Vulnerable

Use-after-free in the JavaScript Engine component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 140.8, Thunderbird < 148, and Thunderbird < 140.8.

9 affected packages

firefox, thunderbird, mozjs38, mozjs52, mozjs68...

Package 22.04 LTS
firefox Not affected
thunderbird Vulnerable
mozjs38 Not in release
mozjs52 Not in release
mozjs68 Not in release
mozjs78 Ignored
mozjs91 Ignored
mozjs102 Ignored
mozjs115 Not in release
Show all 9 packages Show less packages

CVE-2026-2762

Medium priority
Vulnerable

Integer overflow in the JavaScript: Standard Library component. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thunderbird < 148, and Thunderbird < 140.8.

9 affected packages

firefox, thunderbird, mozjs38, mozjs52, mozjs68...

Package 22.04 LTS
firefox Not affected
thunderbird Vulnerable
mozjs38 Not in release
mozjs52 Not in release
mozjs68 Not in release
mozjs78 Ignored
mozjs91 Ignored
mozjs102 Ignored
mozjs115 Not in release
Show all 9 packages Show less packages

CVE-2026-2761

Medium priority
Vulnerable

Sandbox escape in the Graphics: WebRender component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 140.8, Thunderbird < 148, and Thunderbird < 140.8.

9 affected packages

firefox, thunderbird, mozjs38, mozjs52, mozjs68...

Package 22.04 LTS
firefox Not affected
thunderbird Vulnerable
mozjs38 Not in release
mozjs52 Not in release
mozjs68 Not in release
mozjs78 Ignored
mozjs91 Ignored
mozjs102 Ignored
mozjs115 Not in release
Show all 9 packages Show less packages

CVE-2026-2760

Medium priority
Vulnerable

Sandbox escape due to incorrect boundary conditions in the Graphics: WebRender component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 140.8, Thunderbird < 148, and Thunderbird < 140.8.

9 affected packages

firefox, thunderbird, mozjs38, mozjs52, mozjs68...

Package 22.04 LTS
firefox Not affected
thunderbird Vulnerable
mozjs38 Not in release
mozjs52 Not in release
mozjs68 Not in release
mozjs78 Ignored
mozjs91 Ignored
mozjs102 Ignored
mozjs115 Not in release
Show all 9 packages Show less packages

CVE-2026-2759

Medium priority
Vulnerable

Incorrect boundary conditions in the Graphics: ImageLib component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 140.8, Thunderbird < 148, and Thunderbird < 140.8.

9 affected packages

firefox, thunderbird, mozjs38, mozjs52, mozjs68...

Package 22.04 LTS
firefox Not affected
thunderbird Vulnerable
mozjs38 Not in release
mozjs52 Not in release
mozjs68 Not in release
mozjs78 Ignored
mozjs91 Ignored
mozjs102 Ignored
mozjs115 Not in release
Show all 9 packages Show less packages

CVE-2026-2758

Medium priority
Vulnerable

Use-after-free in the JavaScript: GC component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 140.8, Thunderbird < 148, and Thunderbird < 140.8.

9 affected packages

firefox, thunderbird, mozjs38, mozjs52, mozjs68...

Package 22.04 LTS
firefox Not affected
thunderbird Vulnerable
mozjs38 Not in release
mozjs52 Not in release
mozjs68 Not in release
mozjs78 Ignored
mozjs91 Ignored
mozjs102 Ignored
mozjs115 Not in release
Show all 9 packages Show less packages

CVE-2026-2757

Medium priority
Vulnerable

Incorrect boundary conditions in the WebRTC: Audio/Video component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 140.8, Thunderbird < 148, and Thunderbird < 140.8.

9 affected packages

mozjs38, firefox, thunderbird, mozjs52, mozjs68...

Package 22.04 LTS
mozjs38 Not in release
firefox Not affected
thunderbird Vulnerable
mozjs52 Not in release
mozjs68 Not in release
mozjs78 Ignored
mozjs91 Ignored
mozjs102 Ignored
mozjs115 Not in release
Show all 9 packages Show less packages

CVE-2026-2634

Medium priority
Ignored

Malicious scripts could cause desynchronization between the address bar and web content before a response is received in Firefox iOS, allowing attacker-controlled pages to be presented under spoofed domains. This vulnerability...

9 affected packages

firefox, thunderbird, mozjs38, mozjs52, mozjs68...

Package 22.04 LTS
firefox Not affected
thunderbird Not affected
mozjs38 Not in release
mozjs52 Not in release
mozjs68 Not in release
mozjs78 Ignored
mozjs91 Ignored
mozjs102 Ignored
mozjs115 Not in release
Show all 9 packages Show less packages

CVE-2026-3054

Medium priority
Needs evaluation

A vulnerability was identified in Alinto SOGo 5.12.3/5.12.4. This impacts an unknown function. The manipulation of the argument hint leads to cross site scripting. The attack can be initiated remotely. The exploit is publicly...

1 affected package

sogo

Package 22.04 LTS
sogo Needs evaluation
Show less packages

CVE-2026-26983

Medium priority
Needs evaluation

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, the MSL interpreter crashes when processing a invalid `<map>` element that causes it to use...

1 affected package

imagemagick

Package 22.04 LTS
imagemagick Needs evaluation
Show less packages