VYPR

rpm package

opensuse/MozillaFirefox&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/MozillaFirefox&distro=openSUSE%20Tumbleweed

Vulnerabilities (2,706)

  • CVE-2026-92059CriSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Incorrect boundary conditions in the DOM: Editor component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92058HigSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Use-after-free in the Graphics component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92057CriSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Mitigation bypass in the Enterprise Policies component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92056HigSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Use-after-free in the Graphics: Text component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92055HigSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Privilege escalation in the DevTools component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92054HigSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Privilege escalation in the Memory component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92053HigSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92052HigSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Privilege escalation due to uninitialized memory in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92051CriSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Spoofing issue due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.

  • CVE-2026-92050CriSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Sandbox escape due to race condition in the XPConnect component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.

  • CVE-2026-92049HigSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Use-after-free in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92048CriSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92047HigSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Privilege escalation in the Crash Reporting component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92046HigSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Use-after-free in the Graphics component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92045CriSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Sandbox escape due to incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92044HigSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Information disclosure in the Networking: HTTP component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92043HigSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Privilege escalation due to incorrect boundary conditions in the Audio/Video component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92042HigSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Race condition in the DOM: Content Processes component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92041CriSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92040HigSep 15, 2026
    affected < 156.0-1.1fixed 156.0-1.1

    Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.

Page 2 of 136