Security Advisory

CVE-2026-2785

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-24 13:33:18
Last updated 2026-04-13 13:53:37
Assigner mozilla
State PUBLISHED

Description

Invalid pointer in the JavaScript Engine component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.