VYPR

rpm package

opensuse/firefox-esr&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/firefox-esr&distro=openSUSE%20Tumbleweed

Vulnerabilities (2,567)

  • CVE-2026-100757HigSep 29, 2026
    affected < 153.4.0-1.1fixed 153.4.0-1.1

    Use-after-free in the Widget component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17.

  • CVE-2026-100756HigSep 29, 2026
    affected < 153.4.0-1.1fixed 153.4.0-1.1

    Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17.

  • CVE-2026-92079CriSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Mitigation bypass in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92078MedSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Denial-of-service in the Security component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92077MedSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Denial-of-service in the SVG component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92076HigSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Incorrect boundary conditions in the Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92075CriSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92074HigSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Mitigation bypass in the Popup Blocker component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92073HigSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92072HigSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Incorrect boundary conditions in the Safe Browsing component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92071CriSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92070MedSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Information disclosure in the Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92069MedSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Spoofing issue in the DOM: Navigation component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92068MedSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Site isolation issue in the Reader Mode component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92067HigSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Use-after-free in the Widget: Gtk component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92065HigSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92064HigSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92062HigSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Privilege escalation in the Session Restore component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92060HigSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Use-after-free in the Internationalization component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

  • CVE-2026-92059CriSep 15, 2026
    affected < 153.3.0-1.1fixed 153.3.0-1.1

    Incorrect boundary conditions in the DOM: Editor component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

Page 4 of 129