VULNERABILITY INTELLIGENCE

CVE index

Use CVSS, EPSS, CISA KEV, affected-version data, and source evidence as separate signals for prioritization.

NVD data is used under its public data terms. This service is not endorsed or certified by NVD.
19,982 CVE recordsPage 652 of 1333 · EPSS data 2026.08.13
ReviewHigh
CVE-2026-12326

Mozilla Firefox, Thunderbird, Red Hat Enterprise Linux 10

Memory safety bugs present in Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 152 and Thunderbird 152.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-12324

Mozilla Firefox, Thunderbird, firefox

Incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-12315

Mozilla Firefox, Thunderbird, firefox

Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-12304

Mozilla Firefox, Thunderbird, firefox

Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

The CVSS severity warrants an early asset and exposure review.