PT-2026-41928 · Mozilla+1 · Firefox+2
Nika Layzell
+3
·
Published
2026-05-19
·
Updated
2026-06-02
·
CVE-2026-8974
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Firefox versions 140.10 through 150
Thunderbird versions 140.10 through 150
Description
Memory safety bugs involving memory corruption could allow an attacker to run arbitrary code.
Recommendations
Update Firefox to version 151 or ESR 140.11.
Update Thunderbird to version 151 or 140.11.
Fix
DoS
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Firefox
Rocky Linux
Thunderbird