VYPR

rpm package

opensuse/MozillaFirefox&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/MozillaFirefox&distro=openSUSE%20Tumbleweed

Vulnerabilities (2,633)

  • CVE-2026-74980MedAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Clickjacking issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Firefox 154.

  • CVE-2026-74979CriAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Mitigation bypass in the Add-ons Manager component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.

  • CVE-2026-74978HigAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Clickjacking issue in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.

  • CVE-2026-74977HigAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.

  • CVE-2026-74976MedAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.

  • CVE-2026-74975MedAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Spoofing issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Firefox 154.

  • CVE-2026-74974MedAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Same-origin policy bypass in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.

  • CVE-2026-74973MedAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Race condition, use-after-free in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.

  • CVE-2026-74972MedAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Information disclosure in the DOM: Push Subscriptions component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.

  • CVE-2026-74971MedAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Information disclosure in the DOM: UI Events & Focus Handling component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.

  • CVE-2026-74970MedAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.

  • CVE-2026-74969HigAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.

  • CVE-2026-74968MedAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.

  • CVE-2026-74967MedAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Same-origin policy bypass in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.

  • CVE-2026-74966HigAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Information disclosure in the Form Autofill component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.

  • CVE-2026-74965HigAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Privilege escalation in the Shell Integration component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.

  • CVE-2026-74964CriAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.

  • CVE-2026-74963MedAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.

  • CVE-2026-74962HigAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Site isolation issue in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.

  • CVE-2026-74961CriAug 18, 2026
    affected < 154.0-1.1fixed 154.0-1.1

    Side-channel in the Web Audio component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.

Page 3 of 132