CVE-2026-0880: NixOS vulnerability analysis and mitigation
Sandbox escape due to integer overflow in the Graphics component. This vulnerability was fixed in Firefox 147, Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.
Source: NVD
Related NixOS vulnerabilities:
CVE ID
Severity
Score
Technologies
Component name
CISA KEV exploit
Has fix
Published date
CVE-2026-21010
HIGH
7.8
NixOS
android
No
No
Apr 13, 2026
CVE-2026-21012
MEDIUM
6.8
NixOS
android
No
No
Apr 13, 2026
CVE-2026-21011
MEDIUM
5.4
NixOS
android
No
No
Apr 13, 2026
CVE-2026-21008
MEDIUM
5.1
NixOS
android
No
No
Apr 13, 2026
CVE-2026-21007
MEDIUM
4.4
NixOS
android
No
No
Apr 13, 2026
Free Vulnerability Assessment
Benchmark your Cloud Security Posture
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.