PT-2026-30826 · Mozilla · Thunderbird+1

·

CVE-2026-5735

·

Published

2026-04-07

·

Updated

2026-07-25

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Firefox versions prior to 149.0.2 Thunderbird versions prior to 149.0.2
Description Memory safety bugs exist in Firefox 149.0.1 and Thunderbird 149.0.1. These bugs demonstrate evidence of memory corruption, and it is presumed that, with sufficient effort, they could be exploited to execute arbitrary code. The vulnerability involves writing beyond buffer boundaries.
Recommendations Update Firefox to version 149.0.2 or later. Update Thunderbird to version 149.0.2 or later.

Fix

DoS

Memory Corruption

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-04823
CVE-2026-5735
OPENSUSE-SU-2026:10511-1
OPENSUSE-SU-2026:11373-1

Affected Products

Firefox
Thunderbird