CVE-2026-12290
גבוהה 8.1
תיאור (מקור, אנגלית)
Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12.
מדדים
- CVSS 3.1
-
8.1 (HIGH)
מקור הציון: CNA
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-11/8/2026
- CWE
- CWE-119, CWE-823
מוצרים מושפעים
mozilla: firefox; mozilla: thunderbird
קישורים
- https://www.mozilla.org/security/advisories/mfsa2026-57/ Vendor Advisory
- https://www.mozilla.org/security/advisories/mfsa2026-58/ Vendor Advisory
- https://www.mozilla.org/security/advisories/mfsa2026-59/ Vendor Advisory
- https://www.mozilla.org/security/advisories/mfsa2026-60/ Vendor Advisory
- https://www.mozilla.org/security/advisories/mfsa2026-61/ Vendor Advisory
- https://bugzilla.mozilla.org/show_bug.cgi?id=2024852 Permissions Required
- https://access.redhat.com/errata/RHSA-2026:27717
- https://access.redhat.com/errata/RHSA-2026:27733
- https://access.redhat.com/errata/RHSA-2026:27734
- https://access.redhat.com/errata/RHSA-2026:29940