CVE-2019-17026
Mozilla Firefox and Thunderbird
Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a type confusion. We are aware of targeted attacks in the wild abusing this flaw. This vulnerability affects Firefox ESR < 68.4.1, Thunderbird < 68.4.1, and Firefox < 72.0.1.
- CVSS
- 8.8
- EPSS
- 43.7% 98.6% percentile
- CISA KEV
- Listed
- Published
- 2020.03.02