2026 CVE Vulnerabilities
65,007 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-6783 | MEDIUM | 5.3 | 0.2% | Apr 21, 2026 | Incorrect boundary conditions, integer overflow in the Audio/Video: Playback component. This vulnerability was fixed in ... |
| CVE-2026-6782 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | Information disclosure in the IP Protection component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. |
| CVE-2026-6781 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | Denial-of-service in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150 and Thunderbird 15... |
| CVE-2026-6780 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | Denial-of-service in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150 and Thunderbird 15... |
| CVE-2026-6779 | MEDIUM | 5.3 | 0.2% | Apr 21, 2026 | Other issue in the JavaScript Engine component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. |
| CVE-2026-6778 | MEDIUM | 5.3 | 0.3% | Apr 21, 2026 | Invalid pointer in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. |
| CVE-2026-6777 | MEDIUM | 5.3 | 0.2% | Apr 21, 2026 | Other issue in the Networking: DNS component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. |
| CVE-2026-6776 | HIGH | 7.8 | 0.1% | Apr 21, 2026 | Incorrect boundary conditions in the WebRTC: Networking component. This vulnerability was fixed in Firefox 150, Firefox ... |
| CVE-2026-6775 | MEDIUM | 5.3 | 0.2% | Apr 21, 2026 | Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. |
| CVE-2026-6774 | MEDIUM | 5.4 | 0.2% | Apr 21, 2026 | Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. |
| CVE-2026-6773 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | Denial-of-service due to integer overflow in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 150... |
| CVE-2026-6772 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | Incorrect boundary conditions in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ES... |
| CVE-2026-6771 | CRITICAL | 9.8 | 0.3% | Apr 21, 2026 | Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thund... |
| CVE-2026-6770 | MEDIUM | 6.5 | 4.9% | Apr 21, 2026 | Other issue in the Storage: IndexedDB component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunde... |
| CVE-2026-6769 | HIGH | 8.8 | 0.2% | Apr 21, 2026 | Privilege escalation in the Debugger component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunder... |
| CVE-2026-6768 | CRITICAL | 9.8 | 0.3% | Apr 21, 2026 | Mitigation bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. |
| CVE-2026-6767 | MEDIUM | 5.3 | 0.2% | Apr 21, 2026 | Other issue in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ... |
| CVE-2026-6766 | HIGH | 7.5 | 0.3% | Apr 21, 2026 | Incorrect boundary conditions in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ES... |
| CVE-2026-6765 | MEDIUM | 5.3 | 0.2% | Apr 21, 2026 | Information disclosure in the Form Autofill component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, ... |
| CVE-2026-6764 | MEDIUM | 6.5 | 0.2% | Apr 21, 2026 | Incorrect boundary conditions in the DOM: Device Interfaces component. This vulnerability was fixed in Firefox 150, Fire... |
| CVE-2026-6763 | MEDIUM | 6.5 | 0.2% | Apr 21, 2026 | Mitigation bypass in the File Handling component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thund... |
| CVE-2026-6762 | MEDIUM | 6.3 | 0.2% | Apr 21, 2026 | Spoofing issue in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firef... |
| CVE-2026-6761 | HIGH | 8.8 | 0.2% | Apr 21, 2026 | Privilege escalation in the Networking component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thund... |
| CVE-2026-6760 | CRITICAL | 9.8 | 0.3% | Apr 21, 2026 | Mitigation bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. |
| CVE-2026-6759 | HIGH | 7.5 | 0.4% | Apr 21, 2026 | Use-after-free in the Widget: Cocoa component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderb... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now