vulnerability

FreeBSD: VID-ff20d3a3-f211-11f0-9ca3-b42e991fc52e (CVE-2026-0892): Mozilla -- multiple vulnerabilities

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Jan 15, 2026
Added
Jan 27, 2026
Modified
Jan 27, 2026

Description

Memory safety bugs present in Firefox 146 and Thunderbird 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. Denial-of-service in the DOM: Service Workers component. Information disclosure in the XML component. Sandbox escape in the Messaging System component.

Solutions

freebsd-upgrade-package-firefoxfreebsd-upgrade-package-thunderbird
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.