Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Mozilla | Firefox | 140.10 ~ 140.* | - | |
| Mozilla | Thunderbird | 140.10 ~ 140.* | - |
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-6755 | Mitigation bypass in the DOM: postMessage component | |
| CVE-2026-6764 | Incorrect boundary conditions in the DOM: Device Interfaces component | |
| CVE-2026-6763 | Mitigation bypass in the File Handling component | |
| CVE-2026-6762 | Spoofing issue in the DOM: Core & HTML component | |
| CVE-2026-6761 | Privilege escalation in the Networking component | |
| CVE-2026-6760 | Mitigation bypass in the Networking: Cookies component | |
| CVE-2026-6759 | Use-after-free in the Widget: Cocoa component | |
| CVE-2026-6758 | Use-after-free in the JavaScript: WebAssembly component | |
| CVE-2026-6757 | Invalid pointer in the JavaScript: WebAssembly component | |
| CVE-2026-6756 | Mitigation bypass in Firefox for Android | |
| CVE-2026-6765 | Information disclosure in the Form Autofill component | |
| CVE-2026-6754 | Use-after-free in the JavaScript Engine component | |
| CVE-2026-6753 | Incorrect boundary conditions in the WebRTC component | |
| CVE-2026-6752 | Incorrect boundary conditions in the WebRTC component | |
| CVE-2026-6751 | Uninitialized memory in the Audio/Video: Web Codecs component | |
| CVE-2026-6749 | Information disclosure due to uninitialized memory in the Graphics: Canvas2D component | |
| CVE-2026-6750 | Privilege escalation in the Graphics: WebRender component | |
| CVE-2026-6748 | Uninitialized memory in the Audio/Video: Web Codecs component | |
| CVE-2026-6747 | Use-after-free in the WebRTC component | |
| CVE-2026-6746 | Use-after-free in the DOM: Core & HTML component |
Showing top 20 of 41 CVEs. View all on vendor page → →
No comments yet