PT-2026-21729 · Mozilla · Thunderbird+1

Gary Kwong

·

Published

2026-02-24

·

Updated

2026-03-08

·

CVE-2026-2796

CVSS v3.1
9.8
VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Firefox versions prior to 148 Thunderbird versions prior to 148
Description A flaw exists in the JavaScript: WebAssembly component due to a JIT miscompilation issue. This can lead to undesirable behavior within the software.
Recommendations Update Firefox to version 148 or later. Update Thunderbird to version 148 or later.

Fix

Type Confusion

Weakness Enumeration

Related Identifiers

CVE-2026-2796

Affected Products

Firefox
Thunderbird