92,816 indexed
CVECVE vulnerabilities
92,816 CVEs indexed — newest first. Filter by CVSS severity or CISA KEV listing; KEV-flagged entries surface a rose pill. Authored by Adam Lundqvist.
Showing 3,651–3,700 of 92,816 · page 74 of 1857
| ID | Title | Summary |
|---|---|---|
| CVE-2026-92084 | CVE-2026-92084 CVSS 9.1 | The The Beaver Builder Page Builder – Drag and Drop Website Builder plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, … |
| CVE-2026-92082 | CVE-2026-92082 | By default, Payara Server does not limit the number of failed login attempts, which can leave it vulnerable to brute force login attacks. To mitigate this, Pay… |
| CVE-2026-92081 | CVE-2026-92081 CVSS 5.9 | fastify is a fast and low-overhead web framework for Node.js. In versions before 5.12.5, when a route registers a response trailer via reply.trailer() and is s… |
| CVE-2026-9208 | CVE-2026-9208 CVSS 8.8tanium | Tanium addressed an unauthorized code execution vulnerability in Connect. |
| CVE-2026-92079 | CVE-2026-92079 CVSS 9.1mozilla | Mitigation bypass in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92078 | CVE-2026-92078 CVSS 6.5mozilla | Denial-of-service in the Security component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92077 | CVE-2026-92077 CVSS 6.5mozilla | Denial-of-service in the SVG component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92076 | CVE-2026-92076 CVSS 8.8mozilla | Incorrect boundary conditions in the Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153… |
| CVE-2026-92075 | CVE-2026-92075 CVSS 9.1mozilla | Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92074 | CVE-2026-92074 CVSS 8.8mozilla | Mitigation bypass in the Popup Blocker component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92073 | CVE-2026-92073 CVSS 8.8mozilla | Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153… |
| CVE-2026-92072 | CVE-2026-92072 CVSS 8.0mozilla | Incorrect boundary conditions in the Safe Browsing component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird … |
| CVE-2026-92071 | CVE-2026-92071 CVSS 9.6mozilla | Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird… |
| CVE-2026-92070 | CVE-2026-92070 CVSS 4.3mozilla | Information disclosure in the Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-9207 | CVE-2026-9207 CVSS 8.8tanium | Tanium addressed an unauthorized code execution vulnerability in Connect. |
| CVE-2026-92069 | CVE-2026-92069 CVSS 5.4mozilla | Spoofing issue in the DOM: Navigation component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92068 | CVE-2026-92068 CVSS 5.4mozilla | Site isolation issue in the Reader Mode component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92067 | CVE-2026-92067 CVSS 8.8mozilla | Use-after-free in the Widget: Gtk component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92066 | CVE-2026-92066 CVSS 9.8mozilla | Sandbox escape in the Profile Backup component. This vulnerability was fixed in Firefox 156 and Thunderbird 156. |
| CVE-2026-92065 | CVE-2026-92065 CVSS 8.8mozilla | Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird… |
| CVE-2026-92064 | CVE-2026-92064 CVSS 8.8mozilla | Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird… |
| CVE-2026-92063 | CVE-2026-92063 CVSS 6.5mozilla | Denial-of-service in the Audio/Video component. This vulnerability was fixed in Firefox 156 and Thunderbird 156. |
| CVE-2026-92062 | CVE-2026-92062 CVSS 8.8mozilla | Privilege escalation in the Session Restore component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92061 | CVE-2026-92061 CVSS 9.8mozilla | Incorrect boundary conditions in the Security: Process Sandboxing component. This vulnerability was fixed in Firefox 156 and Thunderbird 156. |
| CVE-2026-92060 | CVE-2026-92060 CVSS 8.8mozilla | Use-after-free in the Internationalization component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92059 | CVE-2026-92059 CVSS 9.3mozilla | Incorrect boundary conditions in the DOM: Editor component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 15… |
| CVE-2026-92058 | CVE-2026-92058 CVSS 8.8mozilla | Use-after-free in the Graphics component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92057 | CVE-2026-92057 CVSS 9.1mozilla | Mitigation bypass in the Enterprise Policies component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92056 | CVE-2026-92056 CVSS 8.8mozilla | Use-after-free in the Graphics: Text component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92055 | CVE-2026-92055 CVSS 8.8mozilla | Privilege escalation in the DevTools component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92054 | CVE-2026-92054 CVSS 8.8mozilla | Privilege escalation in the Memory component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92053 | CVE-2026-92053 CVSS 8.8mozilla | Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 1… |
| CVE-2026-92052 | CVE-2026-92052 CVSS 8.8mozilla | Privilege escalation due to uninitialized memory in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunde… |
| CVE-2026-92051 | CVE-2026-92051 CVSS 9.1mozilla | Spoofing issue due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 156 and Thunderbird 156. |
| CVE-2026-92050 | CVE-2026-92050 CVSS 9.1mozilla | Sandbox escape due to race condition in the XPConnect component. This vulnerability was fixed in Firefox 156 and Thunderbird 156. |
| CVE-2026-9205 | CVE-2026-9205 CVSS 7.4langflow | IBM Langflow OSS contains a weak cryptographic key derivation vulnerability in the ensure_fernet_key() function. |
| CVE-2026-92049 | CVE-2026-92049 CVSS 8.8mozilla | Use-after-free in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92048 | CVE-2026-92048 CVSS 9.0mozilla | Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird… |
| CVE-2026-92047 | CVE-2026-92047 CVSS 8.8mozilla | Privilege escalation in the Crash Reporting component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92046 | CVE-2026-92046 CVSS 8.8mozilla | Use-after-free in the Graphics component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92045 | CVE-2026-92045 CVSS 9.6mozilla | Sandbox escape due to incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, a… |
| CVE-2026-92044 | CVE-2026-92044 CVSS 7.5mozilla | Information disclosure in the Networking: HTTP component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.… |
| CVE-2026-92043 | CVE-2026-92043 CVSS 8.8mozilla | Privilege escalation due to incorrect boundary conditions in the Audio/Video component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunder… |
| CVE-2026-92042 | CVE-2026-92042 CVSS 7.5mozilla | Race condition in the DOM: Content Processes component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92041 | CVE-2026-92041 CVSS 9.1mozilla | Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92040 | CVE-2026-92040 CVSS 8.8mozilla | Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 156 and Thunderbird 156. |
| CVE-2026-9204 | CVE-2026-9204 CVSS 5.3gitlab | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.10 before 18.10.8, 18.11 before 18.11.5, and 19.0 before 19.0.2 that under certai… |
| CVE-2026-92039 | CVE-2026-92039 CVSS 6.3mozilla | Mitigation bypass in the DOM: Notifications component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3. |
| CVE-2026-92038 | CVE-2026-92038 CVSS 9.1mozilla | Mitigation bypass in the Remote Settings Client component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153… |
| CVE-2026-92037 | CVE-2026-92037 CVSS 9.8mozilla | Incorrect boundary conditions in the DOM: Animation component. This vulnerability was fixed in Firefox 156 and Thunderbird 156. |