Security Advisory

CVE-2026-2786

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-24 13:33:18
Last updated 2026-05-10 12:54:19
Assigner mozilla
State PUBLISHED

Description

Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.