Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 393 962

Количество 393 962

nvd логотип

CVE-2026-92057

3 дня назад

Mitigation bypass in the Enterprise Policies component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

EPSS: Низкий
nvd логотип

CVE-2026-92056

3 дня назад

Use-after-free in the Graphics: Text component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

EPSS: Низкий
nvd логотип

CVE-2026-92055

3 дня назад

Privilege escalation in the DevTools component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-92054

3 дня назад

Privilege escalation in the Memory component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-92053

3 дня назад

Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-92052

3 дня назад

Privilege escalation due to uninitialized memory in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-92051

3 дня назад

Spoofing issue due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.

EPSS: Низкий
nvd логотип

CVE-2026-92050

3 дня назад

Sandbox escape due to race condition in the XPConnect component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.

EPSS: Низкий
nvd логотип

CVE-2026-9204

3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.10 before 18.10.8, 18.11 before 18.11.5, and 19.0 before 19.0.2 that under certain conditions could have allowed an authenticated user to read arbitrary files from the Gitaly server and access internal network resources during repository import, due to insufficient validation of secondary URLs.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2026-92049

3 дня назад

Use-after-free in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

EPSS: Низкий
nvd логотип

CVE-2026-92048

3 дня назад

Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

EPSS: Низкий
nvd логотип

CVE-2026-92047

3 дня назад

Privilege escalation in the Crash Reporting component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-92046

3 дня назад

Use-after-free in the Graphics component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

EPSS: Низкий
nvd логотип

CVE-2026-92045

3 дня назад

Sandbox escape due to incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

EPSS: Низкий
nvd логотип

CVE-2026-92044

3 дня назад

Information disclosure in the Networking: HTTP component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

EPSS: Низкий
nvd логотип

CVE-2026-92043

3 дня назад

Privilege escalation due to incorrect boundary conditions in the Audio/Video component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-92042

3 дня назад

Race condition in the DOM: Content Processes component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

EPSS: Низкий
nvd логотип

CVE-2026-92041

3 дня назад

Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

EPSS: Низкий
nvd логотип

CVE-2026-92040

3 дня назад

Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.

EPSS: Низкий
nvd логотип

CVE-2026-9203

около 1 месяца назад

A server-side request forgery vulnerability in Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticated user with low-privileged roles to bypass protections for cloud instance metadata endpoints. Successful exploitation can disclose cloud credentials and compromise cloud resources accessible to the host instance.

CVSS3: 8.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-92057

Mitigation bypass in the Enterprise Policies component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92056

Use-after-free in the Graphics: Text component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92055

Privilege escalation in the DevTools component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

CVSS3: 8.8
0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92054

Privilege escalation in the Memory component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

CVSS3: 8.8
0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92053

Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

CVSS3: 8.8
0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92052

Privilege escalation due to uninitialized memory in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

CVSS3: 8.8
0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92051

Spoofing issue due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.

0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92050

Sandbox escape due to race condition in the XPConnect component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.

0%
Низкий
3 дня назад
nvd логотип
CVE-2026-9204

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.10 before 18.10.8, 18.11 before 18.11.5, and 19.0 before 19.0.2 that under certain conditions could have allowed an authenticated user to read arbitrary files from the Gitaly server and access internal network resources during repository import, due to insufficient validation of secondary URLs.

CVSS3: 5.3
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-92049

Use-after-free in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92048

Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92047

Privilege escalation in the Crash Reporting component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

CVSS3: 8.8
0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92046

Use-after-free in the Graphics component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92045

Sandbox escape due to incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92044

Information disclosure in the Networking: HTTP component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92043

Privilege escalation due to incorrect boundary conditions in the Audio/Video component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

CVSS3: 8.8
0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92042

Race condition in the DOM: Content Processes component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92041

Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

0%
Низкий
3 дня назад
nvd логотип
CVE-2026-92040

Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.

0%
Низкий
3 дня назад
nvd логотип
CVE-2026-9203

A server-side request forgery vulnerability in Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticated user with low-privileged roles to bypass protections for cloud instance metadata endpoints. Successful exploitation can disclose cloud credentials and compromise cloud resources accessible to the host instance.

CVSS3: 8.5
0%
Низкий
около 1 месяца назад

Уязвимостей на страницу