Known vulnerabilities in Firefox ESR - page 10

Vendor: Mozilla
Software: Firefox ESR
Software CPE: cpe:2.3:a:mozilla:firefox_esr:*:*:*:*:*:*:*:*
Total vulnerabilities: 998
Public exploits: 30
Known exploited (KEV): 13
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Firefox ESR Firefox ESR is affected by 998 known vulnerabilities: 11 critical, 508 high, 266 medium, 213 low Critical High Medium Low

Vulnerabilities (998)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU123214 - Protection Mechanism Failure
CVE-2026-2791
CWE-693 Low
No
No
140.8.0 24.02.2026 SB2026022446
SB2026022526
SB2026022527
and 34 more
#VU123213 - Protection Mechanism Failure
CVE-2026-2790
CWE-693 Medium
No
No
140.8.0 24.02.2026 SB2026022446
SB2026022526
SB2026022527
and 34 more
#VU123212 - Use After Free
CVE-2026-2786
CWE-416 Low
No
No
140.8.0 24.02.2026 SB2026022446
SB2026022526
SB2026022527
and 34 more
#VU123211 - NULL Pointer Dereference
CVE-2026-2785
CWE-476 Low
No
No
140.8.0 24.02.2026 SB2026022446
SB2026022526
SB2026022527
and 34 more
#VU123210 - Protection Mechanism Failure
CVE-2026-2784
CWE-693 Medium
No
No
140.8.0 24.02.2026 SB2026022446
SB2026022526
SB2026022527
and 34 more
#VU123209 - Exposure of sensitive information to an unauthorized actor
CVE-2026-2783
CWE-200 Medium
No
No
140.8.0 24.02.2026 SB2026022446
SB2026022526
SB2026022527
and 35 more
#VU123208 - Permissions, Privileges, and Access Controls
CVE-2026-2782
CWE-264 Medium
No
No
140.8.0 24.02.2026 SB2026022446
SB2026022526
SB2026022527
and 35 more
#VU123203 - Use After Free
CVE-2026-2767
CWE-416 High
No
No
140.8.0 24.02.2026 SB2026022446
SB2026022526
SB2026022527
and 34 more
#VU123202 - Use After Free
CVE-2026-2766
CWE-416 High
No
No
140.8.0 24.02.2026 SB2026022446
SB2026022526
SB2026022527
and 35 more
#VU123201 - Use After Free
CVE-2026-2765
CWE-416 High
No
No
140.8.0 24.02.2026 SB2026022446
SB2026022526
SB2026022527
and 34 more
#VU123200 - Integer overflow
CVE-2026-2762
CWE-190 High
No
No
140.8.0 24.02.2026 SB2026022446
SB2026022526
SB2026022527
and 34 more
#VU122970 - Heap-based Buffer Overflow
CVE-2026-2447
CWE-122 High
No
No
115.32.1, 140.7.1 16.02.2026 SB20260216163
SB20260216169
SB2026022003
and 43 more
#VU121218 - Memory corruption
CVE-2026-0891
CWE-119 High
No
No
140.7.0 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121217 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2026-0890
CWE-451 Low
No
No
140.7.0 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121216 - Improper Restriction of Rendered UI Layers or Frames
CVE-2026-0887
CWE-1021 Medium
No
No
140.7.0 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121215 - Use After Free
CVE-2026-0885
CWE-416 Low
No
No
140.7.0 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121214 - Use After Free
CVE-2026-0884
CWE-416 Low
No
No
140.7.0 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121213 - Exposure of sensitive information to an unauthorized actor
CVE-2026-0883
CWE-200 Medium
No
No
140.7.0 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121211 - Memory corruption
CVE-2026-0886
CWE-119 High
No
No
115.32.0, 140.7.0 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121207 - Protection Mechanism Failure
CVE-2026-0877
CWE-693 High
No
No
115.32.0, 140.7.0 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more


Showing elements 181 - 200 out of 998