PT-2026-30824 · Mozilla · Thunderbird+1

Inseo An

·

Published

2026-04-07

·

Updated

2026-04-19

·

CVE-2026-5733

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Mozilla Firefox versions prior to 149.0.2 Thunderbird versions prior to 149.0.2
Description A buffer overflow flaw exists in the WebGPU component of Mozilla Firefox and Thunderbird. Successful exploitation could allow a remote attacker to execute arbitrary code.
Recommendations Update Mozilla Firefox to version 149.0.2 or later. Update Thunderbird to version 149.0.2 or later.

Exploit

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2026-04850
CVE-2026-5733
OPENSUSE-SU-2026:10511-1

Affected Products

Firefox
Thunderbird