Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2740▼ 483 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
–

3565 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (7.5)0.60%—Mozilla FirefoxMozilla Thunderbird18/8/202625/8/2026
Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
AnalizadaMedia (6.5)0.42%—Mozilla FirefoxMozilla Thunderbird18/8/202619/8/2026
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
AnalizadaMedia (5.4)0.25%—Mozilla Firefox Mobile18/8/202625/8/2026
Spoofing issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Firefox 154.
AnalizadaMedia (5.4)0.17%—Mozilla FirefoxMozilla Thunderbird18/8/202619/8/2026
Same-origin policy bypass in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
AnalizadaMedia (4.2)0.21%—Mozilla FirefoxMozilla Thunderbird18/8/202619/8/2026
Race condition, use-after-free in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
AnalizadaMedia (4.3)0.35%—Mozilla FirefoxMozilla Thunderbird18/8/202619/8/2026
Information disclosure in the DOM: Push Subscriptions component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
AnalizadaMedia (4.3)0.35%—Mozilla FirefoxMozilla Thunderbird18/8/202619/8/2026
Information disclosure in the DOM: UI Events & Focus Handling component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
AnalizadaMedia (5.4)0.16%💥 PoCMozilla FirefoxMozilla Thunderbird18/8/202625/8/2026
Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
ModificadaAlta (8.8)0.48%—Mozilla FirefoxMozilla Thunderbird18/8/202619/8/2026
Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
AnalizadaMedia (5.4)0.16%—Mozilla FirefoxMozilla Thunderbird18/8/202620/8/2026
Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
AnalizadaMedia (5.4)0.17%—Mozilla FirefoxMozilla Thunderbird18/8/202619/8/2026
Same-origin policy bypass in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
AnalizadaAlta (7.5)0.44%—Mozilla FirefoxMozilla Thunderbird18/8/202625/8/2026
Information disclosure in the Form Autofill component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
AnalizadaAlta (8.8)0.44%—Mozilla FirefoxMozilla Thunderbird18/8/202621/8/2026
Privilege escalation in the Shell Integration component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
AnalizadaCrítica (9.8)0.68%—Mozilla FirefoxMozilla Thunderbird18/8/202619/8/2026
Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
AnalizadaMedia (5.4)0.17%—Mozilla FirefoxMozilla Thunderbird18/8/202619/8/2026
Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
AnalizadaAlta (8.1)0.22%—Mozilla FirefoxMozilla Thunderbird18/8/202619/8/2026
Site isolation issue in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
En análisisCrítica (9.1)0.44%—Mozilla FirefoxMozilla Thunderbird18/8/202620/8/2026
Side-channel in the Web Audio component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
AnalizadaAlta (8.1)0.22%—Mozilla FirefoxMozilla Thunderbird18/8/202624/8/2026
Site isolation issue in the WebExtensions component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
AnalizadaCrítica (9.1)0.48%—Mozilla FirefoxMozilla Thunderbird18/8/202624/8/2026
Mitigation bypass in the Storage: Cache API component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
AnalizadaAlta (7.5)0.45%—Mozilla FirefoxMozilla Thunderbird18/8/202619/8/2026
Information disclosure in the WebRTC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
AnalizadaAlta (8.1)0.43%—Mozilla FirefoxMozilla Thunderbird18/8/202624/8/2026
Mitigation bypass in the Safe Browsing component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
AnalizadaCrítica (9.1)0.50%—Mozilla FirefoxMozilla Thunderbird18/8/202619/8/2026
Same-origin policy bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
AnalizadaAlta (8.8)0.41%—Mozilla FirefoxMozilla Thunderbird18/8/202621/8/2026
Privilege escalation in the Request Handling component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
AnalizadaAlta (7.5)0.44%—Mozilla FirefoxMozilla Thunderbird18/8/202619/8/2026
Information disclosure due to side-channel in the Storage: Cache API component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
AnalizadaAlta (8.8)0.44%—Mozilla FirefoxMozilla Thunderbird18/8/202621/8/2026
Privilege escalation in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.