Mozilla · Thunderbird · CVE-2026-2795
**Name of the Vulnerable Software and Affected Versions**
Firefox versions prior to 148
Thunderbird versions prior to 148
**Description**
A use-after-free issue exists in the JavaScript: GC component. This condition can occur when memory is accessed after it has been freed, potentially leading to crashes or arbitrary code execution.
**Recommendations**
Update Firefox to version 148 or later.
Update Thunderbird to version 148 or later.