聚合 NVD、CVE 及多源情資,深度解析 RCE 等高危風險。系統整合 CVSS 與 EPSS 模型,動態追蹤 Exploit 資源與 PoC 公開狀態,研判可利用性。結合官方修補與修復方案,優化漏洞管理優先級,縮短回應週期,保障資產安全。
指派機構(CNA / 來源):[email protected] 移除此篩選
| CVE | 描述 | 最高 CVSS | EPSS % | 公開時間 | 更新時間 |
|---|---|---|---|---|---|
| CVE-2026-6775 | Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. | 5.3 | 0.21% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6774 | Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. | 5.4 | 0.15% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6773 | Denial-of-service due to integer overflow in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. | 7.5 | 0.32% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6772 | Incorrect boundary conditions in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10. | 7.5 | 0.27% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6771 | Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10. | 9.8 | 0.31% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6770 | Other issue in the Storage: IndexedDB component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10. | 6.5 | 4.94% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6769 | Privilege escalation in the Debugger component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10. | 8.8 | 0.23% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6768 | Mitigation bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. | 9.8 | 0.29% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6767 | Other issue in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10. | 5.3 | 0.23% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6766 | Incorrect boundary conditions in the Libraries component in NSS. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10. | 7.5 | 0.26% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6765 | Information disclosure in the Form Autofill component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10. | 5.3 | 0.21% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6764 | Incorrect boundary conditions in the DOM: Device Interfaces component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10. | 6.5 | 0.23% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6763 | Mitigation bypass in the File Handling component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10. | 6.5 | 0.19% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6762 | Spoofing issue in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10. | 6.3 | 0.16% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6761 | Privilege escalation in the Networking component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10. | 8.8 | 0.22% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6760 | Mitigation bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. | 9.8 | 0.28% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6759 | Use-after-free in the Widget: Cocoa component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10. | 7.5 | 0.36% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6758 | Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 150 and Thunderbird 150. | 7.5 | 0.35% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6757 | Invalid pointer in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10. | 6.3 | 0.29% | 2026-04-21 | 2026-06-17 |
| CVE-2026-6756 | Mitigation bypass in Firefox for Android. This vulnerability was fixed in Firefox 150. | 7.5 | 0.24% | 2026-04-21 | 2026-06-17 |