| CVE-2026-4725 | 10 | critical | mozilla / firefox | Sandbox escape due to use-after-free in the Graphics: Canvas2D component. | 165d ago |
| CVE-2026-4692 | 10 | critical | mozilla / firefox | Sandbox escape in the Responsive Design Mode component. | 165d ago |
| CVE-2026-4689 | 10 | critical | mozilla / firefox | Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. | 165d ago |
| CVE-2026-4688 | 10 | critical | mozilla / firefox | Sandbox escape due to use-after-free in the Disability Access APIs component. | 165d ago |
| CVE-2026-4729 | 9.8 | critical | mozilla / firefox | Memory safety bugs present in Firefox 148 and Thunderbird 148. | 165d ago |
| CVE-2026-4723 | 9.8 | critical | mozilla / firefox | Use-after-free in the JavaScript Engine component. | 165d ago |
| CVE-2026-4721 | 9.8 | critical | mozilla / firefox | Memory safety bugs present in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunder | 165d ago |
| CVE-2026-4720 | 9.8 | critical | mozilla / firefox | Memory safety bugs present in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. | 165d ago |
| CVE-2026-4717 | 9.8 | critical | mozilla / firefox | Privilege escalation in the Netmonitor component. | 165d ago |
| CVE-2026-4711 | 9.8 | critical | mozilla / firefox | Use-after-free in the Widget: Cocoa component. | 165d ago |
| CVE-2026-4710 | 9.8 | critical | mozilla / firefox | Incorrect boundary conditions in the Audio/Video component. | 165d ago |
| CVE-2026-4705 | 9.8 | critical | mozilla / firefox | Undefined behavior in the WebRTC: Signaling component. | 165d ago |
| CVE-2026-4702 | 9.8 | critical | mozilla / firefox | JIT miscompilation in the JavaScript Engine component. | 165d ago |
| CVE-2026-4701 | 9.8 | critical | mozilla / firefox | Use-after-free in the JavaScript Engine component. | 165d ago |
| CVE-2026-4700 | 9.8 | critical | mozilla / firefox | Mitigation bypass in the Networking: HTTP component. | 165d ago |
| CVE-2026-4698 | 9.8 | critical | mozilla / firefox | JIT miscompilation in the JavaScript Engine: JIT component. | 165d ago |
| CVE-2026-4696 | 9.8 | critical | mozilla / firefox | Use-after-free in the Layout: Text and Fonts component. | 165d ago |
| CVE-2026-4691 | 9.8 | critical | mozilla / firefox | Use-after-free in the CSS Parsing and Computation component. | 165d ago |
| CVE-2026-4724 | 9.1 | critical | mozilla / firefox | Undefined behavior in the Audio/Video component. | 165d ago |
| CVE-2026-4716 | 9.1 | critical | mozilla / firefox | Incorrect boundary conditions, uninitialized memory in the JavaScript Engine component. | 165d ago |
| CVE-2026-4715 | 9.1 | critical | mozilla / firefox | Uninitialized memory in the Graphics: Canvas2D component. | 165d ago |
| CVE-2026-4722 | 8.8 | high | mozilla / firefox | Privilege escalation in the IPC component. | 165d ago |
| CVE-2026-4690 | 8.6 | high | mozilla / firefox | Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. | 165d ago |
| CVE-2026-4687 | 8.6 | high | mozilla / firefox | Sandbox escape due to incorrect boundary conditions in the Telemetry component. | 165d ago |
| CVE-2026-4718 | 8.1 | high | mozilla / firefox | Undefined behavior in the WebRTC: Signaling component. | 165d ago |
| CVE-2026-4727 | 7.5 | high | mozilla / firefox | Denial-of-service in the Libraries component in NSS. | 165d ago |
| CVE-2026-4726 | 7.5 | high | mozilla / firefox | Denial-of-service in the XML component. | 165d ago |
| CVE-2026-4719 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Graphics: Text component. | 165d ago |
| CVE-2026-4714 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Audio/Video component. | 165d ago |
| CVE-2026-4713 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Graphics component. | 165d ago |
| CVE-2026-4712 | 7.5 | high | mozilla / firefox | Information disclosure in the Widget: Cocoa component. | 165d ago |
| CVE-2026-4709 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Audio/Video: GMP component. | 165d ago |
| CVE-2026-4708 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Graphics component. | 165d ago |
| CVE-2026-4707 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Graphics: Canvas2D component. | 165d ago |
| CVE-2026-4706 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Graphics: Canvas2D component. | 165d ago |
| CVE-2026-4704 | 7.5 | high | mozilla / firefox | Denial-of-service in the WebRTC: Signaling component. | 165d ago |
| CVE-2026-4699 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Layout: Text and Fonts component. | 165d ago |
| CVE-2026-4697 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Audio/Video: Web Codecs component. | 165d ago |
| CVE-2026-4695 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Audio/Video: Web Codecs component. | 165d ago |
| CVE-2026-4694 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions, integer overflow in the Graphics component. | 165d ago |
| CVE-2026-4693 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Audio/Video: Playback component. | 165d ago |
| CVE-2026-4686 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Graphics: Canvas2D component. | 165d ago |
| CVE-2026-4685 | 7.5 | high | mozilla / firefox | Incorrect boundary conditions in the Graphics: Canvas2D component. | 165d ago |
| CVE-2026-4684 | 7.5 | high | mozilla / firefox | Race condition, use-after-free in the Graphics: WebRender component. | 165d ago |
| CVE-2026-4728 | 6.5 | medium | mozilla / firefox | Spoofing issue in the Privacy: Anti-Tracking component. | 165d ago |