Mozilla · Firefox · CVE-2026-2792
**Name of the Vulnerable Software and Affected Versions**
Firefox versions prior to 148
Firefox ESR versions prior to 140.8
Thunderbird versions prior to 148
Thunderbird ESR versions prior to 140.8
**Description**
The software contains memory safety bugs that exhibit evidence of memory corruption. It is presumed that, with sufficient effort, these bugs could be exploited to execute arbitrary code.
**Recommendations**
Update Firefox to version 148 or later.
Update Firefox ESR to version 140.8 or later.
Update Thunderbird to version 148 or later.
Update Thunderbird ESR to version 140.8 or later.