FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Mozilla -- Multiple vulnerabilities

Affected packages
firefox < 149.0.0,2
thunderbird < 149.0.0

Details

VuXML ID 6d445322-2945-11f1-8461-b42e991fc52e
Discovery 2026-03-24
Entry 2026-03-26

CVE-2026-4688: Sandbox escape due to use-after-free in Disability Access APIs.

CVE-2026-4695: Incorrect boundary conditions in the Audio/Video: Web Codecs component.

CVE-2026-4697: Incorrect boundary conditions in the Audio/Video: Web Codecs component.

CVE-2026-4700: Mitigation bypass in the Networking: HTTP component.

CVE-2026-4701: Use-after-free in the JavaScript Engine component.

CVE-2026-4702: JIT miscompilation in the JavaScript Engine component.

CVE-2026-4704: Denial-of-service in the WebRTC: Signaling component.

CVE-2026-4705: Undefined behavior in the WebRTC: Signaling component.

CVE-2026-4708: Incorrect boundary conditions in the Graphics component.

CVE-2026-4710: Incorrect boundary conditions in the Audio/Video component.

CVE-2026-4711: Use-after-free in the Widget: Cocoa component.

CVE-2026-4712: Information disclosure in the Widget: Cocoa component.

CVE-2026-4713: Incorrect boundary conditions in the Graphics component.

CVE-2026-4714: Incorrect boundary conditions in the Audio/Video component.

CVE-2026-4715: Uninitialized memory in the Graphics: Canvas2D component.

CVE-2026-4716: Incorrect boundary conditions and uninitialized memory in the JavaScript Engine.

CVE-2026-4717: Privilege escalation in the Netmonitor component.

CVE-2026-4718: Undefined behavior in the WebRTC: Signaling component.

CVE-2026-4719: Incorrect boundary conditions in the Graphics: Text component.

CVE-2026-4720: Memory safety bugs

References

CVE Name CVE-2026-4688
CVE Name CVE-2026-4695
CVE Name CVE-2026-4697
CVE Name CVE-2026-4700
CVE Name CVE-2026-4701
CVE Name CVE-2026-4702
CVE Name CVE-2026-4704
CVE Name CVE-2026-4705
CVE Name CVE-2026-4708
CVE Name CVE-2026-4710
CVE Name CVE-2026-4711
CVE Name CVE-2026-4712
CVE Name CVE-2026-4713
CVE Name CVE-2026-4714
CVE Name CVE-2026-4715
CVE Name CVE-2026-4716
CVE Name CVE-2026-4717
CVE Name CVE-2026-4718
CVE Name CVE-2026-4719
CVE Name CVE-2026-4720