VYPR

rpm package

almalinux/firefox-x11

pkg:rpm/almalinux/firefox-x11

Vulnerabilities (478)

  • CVE-2026-12314HigJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12313MedJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Information disclosure, sandbox escape in the Security: Process Sandboxing component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12312HigJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12311MedJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Information disclosure, sandbox escape in the Security: Process Sandboxing component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12310HigJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12309MedJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12308MedJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12307MedJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12306MedJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12305HigJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12304CriJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12302MedJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12299MedJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    JIT miscompilation in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12298MedJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12297CriJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Sandbox escape due to incorrect boundary conditions in the Networking component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12296CriJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Sandbox escape in the Security: Process Sandboxing component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12295CriJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Sandbox escape in the DOM: Navigation component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12294CriJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Sandbox escape in the DOM: Workers component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12292HigJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Incorrect boundary conditions in the Web Audio component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

  • CVE-2026-12291HigJun 16, 2026
    affected < 140.12.0-1.el9_8.alma.1fixed 140.12.0-1.el9_8.alma.1

    Use-after-free in the Networking: HTTP component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12.

Page 3 of 24