Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2856▼ 331 respecto a la semana anterior
Críticas / altas1383▼ 38 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)292▼ 217 respecto a la semana anterior
–

2189 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaCrítica (9.6)0.24%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaMedia (4.3)0.18%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Information disclosure in the Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaMedia (5.4)0.18%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Spoofing issue in the DOM: Navigation component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaMedia (5.4)0.10%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Site isolation issue in the Reader Mode component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaAlta (8.8)0.23%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Use-after-free in the Widget: Gtk component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaCrítica (9.8)0.55%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Sandbox escape in the Profile Backup component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.
AnalizadaAlta (8.8)0.10%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaAlta (8.8)0.10%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaMedia (6.5)0.38%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Denial-of-service in the Audio/Video component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.
AnalizadaAlta (8.8)0.22%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Privilege escalation in the Session Restore component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaCrítica (9.8)0.55%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Incorrect boundary conditions in the Security: Process Sandboxing component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.
AnalizadaAlta (8.8)0.23%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Use-after-free in the Internationalization component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaCrítica (9.3)0.11%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Incorrect boundary conditions in the DOM: Editor component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaAlta (8.8)0.23%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Use-after-free in the Graphics component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaCrítica (9.1)0.25%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Mitigation bypass in the Enterprise Policies component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaAlta (8.8)0.23%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Use-after-free in the Graphics: Text component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaAlta (8.8)0.23%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Privilege escalation in the DevTools component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaAlta (8.8)0.24%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Privilege escalation in the Memory component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaAlta (8.8)0.25%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaAlta (8.8)0.24%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Privilege escalation due to uninitialized memory in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaCrítica (9.1)0.53%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Spoofing issue due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.
AnalizadaCrítica (9.1)0.41%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Sandbox escape due to race condition in the XPConnect component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.
AnalizadaAlta (8.8)0.23%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Use-after-free in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaCrítica (9)0.28%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
AnalizadaAlta (8.8)0.22%—Mozilla FirefoxMozilla Thunderbird15/9/20265/10/2026
Privilege escalation in the Crash Reporting component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.