Mozilla Firefox ESR是美国Mozilla基金会的Firefox(Web浏览器)的一个延长支持版本。 Mozilla Firefox ESR 115.35.1之前版本、Firefox ESR 140.10.1之前版本和Firefox 150.0.1之前版本存在安全漏洞,该漏洞源于内存安全错误,可能导致内存损坏并可能被利用执行任意代码。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Mozilla | Firefox | 115.35.2≤ 115.* |
unaffected |
140.10.2≤ 140.* |
unaffected | ||
150.0.2≤ * |
unaffected | ||
| Mozilla | Thunderbird | 140.10.2≤ 140.* |
unaffected |
150.0.2≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Mozilla | Firefox | 115.35.2 ~ 115.* | - |
|
| Mozilla | Thunderbird | 140.10.2 ~ 140.* | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-8093 | Memory safety bugs fixed in Firefox 150.0.2 | |
| CVE-2026-8094 | Other issue in the WebRTC component | |
| CVE-2026-8091 | Incorrect boundary conditions in the Audio/Video: Playback component | |
| CVE-2026-8090 | Use-after-free in the DOM: Networking component |
No comments yet