Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2736▼ 485 respecto a la semana anterior
Críticas / altas1304▼ 186 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)226▼ 276 respecto a la semana anterior
–

2087 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (5.3)0.34%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.
AnalizadaMedia (5.4)0.26%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.
AnalizadaAlta (7.5)0.58%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Denial-of-service due to integer overflow in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.
AnalizadaAlta (7.5)0.46%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Incorrect boundary conditions in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
AnalizadaCrítica (9.8)0.53%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
AnalizadaMedia (6.5)0.40%💥 PoCMozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Other issue in the Storage: IndexedDB component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
AnalizadaAlta (8.8)0.41%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Privilege escalation in the Debugger component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
AnalizadaCrítica (9.8)0.51%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Mitigation bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.
AnalizadaMedia (5.3)0.38%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Other issue in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
AnalizadaAlta (7.5)0.43%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Incorrect boundary conditions in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
AnalizadaMedia (5.3)0.36%💥 PoCMozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Information disclosure in the Form Autofill component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
AnalizadaMedia (6.5)0.40%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Incorrect boundary conditions in the DOM: Device Interfaces component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
AnalizadaMedia (6.5)0.32%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Mitigation bypass in the File Handling component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
AnalizadaMedia (6.3)0.28%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Spoofing issue in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
AnalizadaAlta (8.8)0.41%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Privilege escalation in the Networking component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
AnalizadaCrítica (9.8)0.51%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Mitigation bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.
AnalizadaAlta (7.5)0.52%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Use-after-free in the Widget: Cocoa component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
AnalizadaAlta (7.5)0.50%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.
AnalizadaMedia (6.3)0.28%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Invalid pointer in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
AnalizadaMedia (6.5)0.25%—Mozilla FirefoxMozilla Thunderbird21/4/202617/6/2026
Mitigation bypass in the DOM: postMessage component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.
ModificadaAlta (7.5)0.58%—Mozilla FirefoxMozilla Thunderbird21/4/202615/7/2026
Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
ModificadaAlta (7.3)0.46%—Mozilla FirefoxMozilla Thunderbird21/4/202615/7/2026
Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
ModificadaAlta (7.3)0.46%—Mozilla FirefoxMozilla Thunderbird21/4/202615/7/2026
Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
ModificadaAlta (7.3)0.46%—Mozilla FirefoxMozilla Thunderbird21/4/202615/7/2026
Uninitialized memory in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
ModificadaAlta (8.8)0.59%—Mozilla FirefoxMozilla Thunderbird21/4/202615/7/2026
Privilege escalation in the Graphics: WebRender component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.