| CVE-2026-84132 | 7.5 | high | mozilla / firefox | Information disclosure in the Networking: HTTP component. | 4d ago |
| CVE-2026-84130 | 7.5 | high | mozilla / firefox | Information disclosure in the Graphics: WebGPU component. | 4d ago |
| CVE-2026-74982 | 7.5 | high | mozilla / firefox | Denial-of-service in the Widget component. | 18d ago |
| CVE-2026-74977 | 7.5 | high | mozilla / firefox | Integer overflow in the Graphics component. | 18d ago |
| CVE-2026-74966 | 7.5 | high | mozilla / firefox | Information disclosure in the Form Autofill component. | 18d ago |
| CVE-2026-74958 | 7.5 | high | mozilla / firefox | Information disclosure in the WebRTC component. | 18d ago |
| CVE-2026-74954 | 7.5 | high | mozilla / firefox | Information disclosure due to side-channel in the Storage: Cache API component. | 18d ago |
| CVE-2026-74934 | 7.5 | high | mozilla / firefox | Site isolation issue in the Graphics: CanvasWebGL component. | 18d ago |
| CVE-2026-14899 | 7.5 | high | mozilla / thunderbird | The code to parse MIME headers for display when forwarding a message (if the setting to view all headers was enabl | 45d ago |
| CVE-2026-16409 | 7.5 | high | mozilla / firefox | Invalid pointer in the Security: PSM component. | 46d ago |
| CVE-2026-16405 | 7.5 | high | mozilla / firefox | Information disclosure in the Networking: WebSockets component. | 46d ago |
| CVE-2026-16400 | 7.5 | high | mozilla / firefox | Information disclosure in the DOM: Security component. | 46d ago |
| CVE-2026-16399 | 7.5 | high | mozilla / firefox | Site isolation issue in the DOM: Navigation component. | 46d ago |
| CVE-2026-16398 | 7.5 | high | mozilla / firefox | Site isolation issue in the Graphics component. | 46d ago |
| CVE-2026-16391 | 7.5 | high | mozilla / firefox | Information disclosure in the Storage: IndexedDB component. | 46d ago |
| CVE-2026-16386 | 7.5 | high | mozilla / firefox | Information disclosure due to uninitialized memory in the Graphics: WebGPU component. | 46d ago |
| CVE-2026-16385 | 7.5 | high | mozilla / firefox | Information disclosure due to uninitialized memory in the Graphics: WebGPU component. | 46d ago |
| CVE-2026-16384 | 7.5 | high | mozilla / firefox | Information disclosure due to uninitialized memory in the Graphics: WebGPU component. | 46d ago |
| CVE-2026-16378 | 7.5 | high | mozilla / firefox | Other issue in the DOM: Copy & Paste and Drag & Drop component. | 46d ago |
| CVE-2026-16376 | 7.5 | high | mozilla / firefox | Denial-of-service in the Graphics: WebGPU component. | 46d ago |
| CVE-2026-16374 | 7.5 | high | mozilla / firefox | Information disclosure in the Framework component in DevTools. | 46d ago |
| CVE-2026-16373 | 7.5 | high | mozilla / firefox mobile | Information disclosure in the Privacy component in Firefox for Android. | 46d ago |
| CVE-2026-16354 | 7.5 | high | mozilla / firefox | Information disclosure in the Graphics: ImageLib component. | 46d ago |
| CVE-2026-12317 | 7.5 | high | mozilla / firefox | Memory safety bug fixed in Firefox 152. | 81d ago |
| CVE-2026-12314 | 7.5 | high | mozilla / firefox | Memory safety bug fixed in Firefox 152. | 81d ago |
| CVE-2026-12312 | 7.5 | high | mozilla / firefox | Memory safety bug fixed in Firefox 152. | 81d ago |
| CVE-2026-12310 | 7.5 | high | mozilla / firefox | Memory safety bug fixed in Firefox 152. | 81d ago |
| CVE-2026-12305 | 7.5 | high | mozilla / firefox | Memory safety bug fixed in Firefox 152. | 81d ago |
| CVE-2026-11799 | 7.5 | high | mozilla / focus | UXSS in Focus for iOS / Klar Webkit navigation. | 88d ago |
| CVE-2026-10701 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Graphics: Text component. | 95d ago |
| CVE-2026-8968 | 7.5 | high | mozilla / firefox | Denial-of-service due to invalid pointer in the Audio/Video: Web Codecs component. | 109d ago |
| CVE-2026-8967 | 7.5 | high | mozilla / firefox | Information disclosure in the Graphics: WebGPU component. | 109d ago |
| CVE-2026-8966 | 7.5 | high | mozilla / firefox | Information disclosure in the IP Protection component. | 109d ago |
| CVE-2026-8965 | 7.5 | high | mozilla / firefox | Information disclosure in the DOM: Security component. | 109d ago |
| CVE-2026-8964 | 7.5 | high | mozilla / firefox | Spoofing issue in the Popup Blocker component. | 109d ago |
| CVE-2026-8963 | 7.5 | high | mozilla / firefox | Spoofing issue in the Web Speech component. | 109d ago |
| CVE-2026-8960 | 7.5 | high | mozilla / firefox | Spoofing issue in WebExtensions. | 109d ago |
| CVE-2026-8954 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions, integer overflow in the Audio/Video component. | 109d ago |
| CVE-2026-8949 | 7.5 | high | mozilla / firefox | Integer overflow in the Widget: Win32 component. | 109d ago |
| CVE-2026-8946 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Audio/Video: Web Codecs component. | 109d ago |
| CVE-2026-8945 | 7.5 | high | mozilla / firefox | Sandbox escape in Firefox and Firefox Focus for Android. | 109d ago |
| CVE-2026-4727 | 7.5 | high | mozilla / firefox | Denial-of-service in the Libraries component in NSS. | 165d ago |
| CVE-2026-4726 | 7.5 | high | mozilla / firefox | Denial-of-service in the XML component. | 165d ago |
| CVE-2026-4719 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Graphics: Text component. | 165d ago |
| CVE-2026-4714 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Audio/Video component. | 165d ago |
| CVE-2026-4713 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Graphics component. | 165d ago |
| CVE-2026-4712 | 7.5 | high | mozilla / firefox | Information disclosure in the Widget: Cocoa component. | 165d ago |
| CVE-2026-4709 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Audio/Video: GMP component. | 165d ago |
| CVE-2026-4708 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Graphics component. | 165d ago |
| CVE-2026-4707 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Graphics: Canvas2D component. | 165d ago |
| CVE-2026-4706 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Graphics: Canvas2D component. | 165d ago |
| CVE-2026-4704 | 7.5 | high | mozilla / firefox | Denial-of-service in the WebRTC: Signaling component. | 165d ago |
| CVE-2026-4699 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Layout: Text and Fonts component. | 165d ago |
| CVE-2026-4697 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Audio/Video: Web Codecs component. | 165d ago |
| CVE-2026-4695 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Audio/Video: Web Codecs component. | 165d ago |
| CVE-2026-4694 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions, integer overflow in the Graphics component. | 165d ago |
| CVE-2026-4693 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Audio/Video: Playback component. | 165d ago |
| CVE-2026-4686 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Graphics: Canvas2D component. | 165d ago |
| CVE-2026-4685 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Graphics: Canvas2D component. | 165d ago |
| CVE-2026-4684 | 7.5 | high | mozilla / firefox | Race condition, use-after-free in the Graphics: WebRender component. | 165d ago |