Memory Safety Bugs in Firefox and Thunderbird by Mozilla
CVE-2026-0892
9.8CRITICAL
What is CVE-2026-0892?
Memory safety bugs have been detected in Firefox and Thunderbird versions 146, which exhibit signs of memory corruption. These vulnerabilities potentially allow for exploitation, enabling the execution of arbitrary code if leveraged effectively. Users are encouraged to update to Firefox and Thunderbird versions 147 or later to mitigate any risks associated with these issues.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Firefox < 147
Thunderbird < 147
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Hiroyuki Ikezoe, Jon Coppeard, Maurice Dauer and the Mozilla Fuzzing Team