Published March 24, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
NixOS
Mozilla Firefox
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 6.3
Exploitation Probability (EPSS) N/A
Affected packages and libraries
- cpe:2.3:a:mozilla:firefox:*:*:*:*:esr:*:*:*
- thunderbird
Sources
AlmaLinux Security Advisory
AlmaLinux 8 Severity HIGHHas FixAdded at: Mar 31, 2026
AlmaLinux 9 Severity HIGHHas FixAdded at: Mar 31, 2026
Chainguard
Chainguard Has FixAdded at: Mar 29, 2026
Debian Security Tracker
Debian 11, 12, 13, 14 Severity HIGHHas FixAdded at: Mar 24, 2026
Echo
Echo Severity HIGHHas FixAdded at: Mar 24, 2026
Homebrew
Homebrew Severity HIGHHas FixAdded at: Mar 26, 2026
Nix
Nix Severity HIGHHas FixAdded at: Mar 26, 2026
Red Hat Errata
Red Hat 6, 7 Severity MEDIUMNo FixAdded at: Mar 26, 2026
Red Hat 8 Severity MEDIUMHas FixAdded at: Mar 26, 2026
Red Hat 9 Severity MEDIUMHas FixAdded at: Mar 26, 2026
Red Hat 10 Severity MEDIUMHas FixAdded at: Mar 26, 2026
Rocky Linux Product Errata
Rocky 8 Severity HIGHHas FixAdded at: Apr 09, 2026
Rocky 9 Severity HIGHHas FixAdded at: Apr 09, 2026
Rocky 10 Severity HIGHHas FixAdded at: Apr 12, 2026
Ubuntu Security Tracker
Ubuntu 22.04 Severity MEDIUMNo FixAdded at: Mar 29, 2026
VulnCheck NVD++
Linux Severity HIGHHas FixAdded at: Mar 25, 2026
Windows Severity HIGHHas FixAdded at: Mar 25, 2026
Wolfi
Wolfi Has FixAdded at: Mar 29, 2026
NVD
Linux Severity HIGHHas FixAdded at: Mar 26, 2026
Windows Severity HIGHHas FixAdded at: Mar 26, 2026