Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
54274
Total
4303
Critical
16132
High
15830
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-100792 | UNKNOWN | — | JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100791 | HIGH | 8.8 | Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100790 | HIGH | 8.8 | Use-after-free in the XSLT component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100789 | HIGH | 8.8 | Use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100788 | UNKNOWN | — | Invalid pointer in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100787 | UNKNOWN | — | Sandbox escape in the XUL component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157. | Sep 29, 2026 |
| CVE-2026-100786 | CRITICAL | 9.6 | Sandbox escape due to use-after-free in the Graphics component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR … | Sep 29, 2026 |
| CVE-2026-100785 | HIGH | 8.8 | Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100784 | HIGH | 8.8 | Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100783 | MEDIUM | 4.3 | Uninitialized memory in the Audio/Video component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100782 | HIGH | 8.8 | Privilege escalation due to incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and … | Sep 29, 2026 |
| CVE-2026-100781 | UNKNOWN | — | Sandbox escape due to incorrect boundary conditions in the Graphics: WebRender component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, … | Sep 29, 2026 |
| CVE-2026-100780 | HIGH | 8.8 | Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100779 | HIGH | 8.8 | Use-after-free in the XSLT component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100778 | CRITICAL | 9.6 | Sandbox escape due to use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, … | Sep 29, 2026 |
| CVE-2026-100777 | HIGH | 8.8 | Use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100776 | HIGH | 8.8 | Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100775 | UNKNOWN | — | Sandbox escape in the Graphics component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100774 | HIGH | 8.8 | Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100773 | HIGH | 8.8 | Use-after-free in the Storage: IndexedDB component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100772 | HIGH | 8.8 | Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100771 | UNKNOWN | — | Undefined behavior in the DOM: Streams component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100770 | CRITICAL | 9.6 | Sandbox escape due to use-after-free in the DOM: Content Processes component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and … | Sep 29, 2026 |
| CVE-2026-100769 | HIGH | 8.8 | Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, and Firefox ESR 140.17. | Sep 29, 2026 |
| CVE-2026-100768 | HIGH | 8.8 | Use-after-free in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 157. | Sep 29, 2026 |