Security Advisory

CVE-2026-2804

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-24 13:33:32
Last updated 2026-04-13 13:54:33
Assigner mozilla
State PUBLISHED

Description

Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 148 and Thunderbird 148.