Vulnerabilities
Vulnerable Software
Mozilla:  >> Firefox  >> 115.39.0  Security Vulnerabilities
Privilege escalation due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
CVSS Score
8.8
EPSS Score
0.003
Published
2026-08-18
Privilege escalation in the Downloads API component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVSS Score
8.8
EPSS Score
0.002
Published
2026-08-18
Mitigation bypass in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVSS Score
9.1
EPSS Score
0.003
Published
2026-08-18
Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
CVSS Score
8.8
EPSS Score
0.003
Published
2026-08-18
Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
CVSS Score
9.8
EPSS Score
0.004
Published
2026-08-18
Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
CVSS Score
9.8
EPSS Score
0.004
Published
2026-08-18
Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
CVSS Score
8.8
EPSS Score
0.003
Published
2026-08-18
Mitigation bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
CVSS Score
9.8
EPSS Score
0.003
Published
2026-07-21
Invalid pointer in the Security: PSM component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
CVSS Score
7.5
EPSS Score
0.003
Published
2026-07-21
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
CVSS Score
9.8
EPSS Score
0.003
Published
2026-07-21


Contact Us

Shodan ® - All rights reserved