This page displays vulnerability information about FreeBSD Ports.
The VUXML data was last processed by FreshPorts on 2026-03-02 18:07:33 UTC
List all Vulnerabilities, by package
List all Vulnerabilities, by date
These are the vulnerabilities relating to the commit you have selected:
| VuXML ID | Description |
|---|---|
| 1124a7b0-1338-11f1-a55d-b42e991fc52e | Firefox -- Multiple vulnerabilities CVE-2026-2807: Memory safety bugs present in Firefox 147 and Thunderbird 147 CVE-2026-2806: Uninitialized memory in the Graphics: Text component. CVE-2026-2805: Invalid pointer in the DOM: Core & HTML component. CVE-2026-2804: Use-after-free in the JavaScript: WebAssembly component. CVE-2026-2803: Information disclosure, mitigation bypass in the Settings UI component. CVE-2026-2802: Race condition in the JavaScript: GC component. CVE-2026-2801: Incorrect boundary conditions in the JavaScript: WebAssembly component. CVE-2026-2799: Use-after-free in the DOM: Core & HTML component. CVE-2026-2798: Use-after-free in the DOM: Core & HTML component. CVE-2026-2797: Use-after-free in the JavaScript: GC component. CVE-2026-2796: JIT miscompilation in the JavaScript: WebAssembly component CVE-2026-2795: Use-after-free in the JavaScript: GC component. Discovery 2026-02-24 Entry 2026-02-26 firefox < 148.0.0,2 thunderbird < 148.0.0 CVE-2026-2807 CVE-2026-2806 CVE-2026-2805 CVE-2026-2804 CVE-2026-2803 CVE-2026-2802 CVE-2026-2801 CVE-2026-2799 CVE-2026-2798 CVE-2026-2797 CVE-2026-2796 CVE-2026-2795 |
| 15f4e0f6-1338-11f1-a55d-b42e991fc52e | Mozilla -- Multiple vulnerabilities CVE-2026-2809: Memory safety bug in the JavaScript: WebAssembly component. CVE-2026-2808: Integer overflow in the JavaScript: Standard Library component. Discovery 2026-02-24 Entry 2026-02-26 firefox < 148.0.0,2 firefox-esr < 140.8.0 thunderbird < 148.0.0 CVE-2026-2809 CVE-2026-2808 |