<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 19:36:44 +0000</lastBuildDate>
    <item>
      <title>certfr-2020-avi-755 — De multiples vulnérabilités ont été découvertes dans Mozilla Firefox,
Mozilla Firefox ESR et Thunderbird. Certaines d'e…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2020-avi-755</link>
      <description>certfr-2020-avi-755</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2020-avi-755</guid>
    </item>
    <item>
      <title>EUVD-2026-46257</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-46257</link>
      <description>EUVD-2026-46257</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-46257</guid>
    </item>
    <item>
      <title>fkie_cve-2020-26953</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-26953</link>
      <description>&lt;p&gt;It was possible to cause the browser to enter fullscreen mode without displaying the security UI; thus making it possible to attempt a phishing attack or otherwise confuse the user. This vulnerability affects Firefox &amp;lt; 83, Firefox ESR &amp;lt; 78.5, and Thunderbird &amp;lt; 78.5.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;It was possible to cause the browser to enter fullscreen mode without displaying the security UI; thus making it possible to attempt a phishing attack or otherwise confuse the user. This vulnerability affects Firefox &amp;lt; 83, Firefox ESR &amp;lt; 78.5, and Thunderbird &amp;lt; 78.5.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-26953</guid>
    </item>
    <item>
      <title>GHSA-vw8x-xjwp-7888</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-vw8x-xjwp-7888</link>
      <description>&lt;p&gt;It was possible to cause the browser to enter fullscreen mode without displaying the security UI; thus making it possible to attempt a phishing attack or otherwise confuse the user. This vulnerability affects Firefox &amp;lt; 83, Firefox ESR &amp;lt; 78.5, and Thunderbird &amp;lt; 78.5.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;It was possible to cause the browser to enter fullscreen mode without displaying the security UI; thus making it possible to attempt a phishing attack or otherwise confuse the user. This vulnerability affects Firefox &amp;lt; 83, Firefox ESR &amp;lt; 78.5, and Thunderbird &amp;lt; 78.5.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-vw8x-xjwp-7888</guid>
    </item>
    <item>
      <title>gsd-2020-26953</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-26953</link>
      <description>gsd-2020-26953</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-26953</guid>
    </item>
    <item>
      <title>OESA-2023-1672 — firefox security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2023-1672</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: firefox&lt;/p&gt;
&lt;p&gt;Mozilla Firefox is an open-source web browser, designed for standards compliance, performance and portability.&#13;
&#13;
Security Fix(es):&#13;
&#13;
Side-channel information leakage in graphics in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to leak cross-origin data via a crafted HTML page.(CVE-2020-16012)&#13;
&#13;
(CVE-2020-26951)&#13;
&#13;
(CVE-2020-26953)&#13;
&#13;
(CVE-2020-26956)&#13;
&#13;
(CVE-2020-26958)&#13;
&#13;
(CVE-2020-26959)&#13;
&#13;
(CVE-2020-26960)&#13;
&#13;
(CVE-2020-26961)&#13;
&#13;
(CVE-2020-26965)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: firefox&lt;/p&gt;
&lt;p&gt;Mozilla Firefox is an open-source web browser, designed for standards compliance, performance and portability.&#13;
&#13;
Security Fix(es):&#13;
&#13;
Side-channel information leakage in graphics in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to leak cross-origin data via a crafted HTML page.(CVE-2020-16012)&#13;
&#13;
(CVE-2020-26951)&#13;
&#13;
(CVE-2020-26953)&#13;
&#13;
(CVE-2020-26956)&#13;
&#13;
(CVE-2020-26958)&#13;
&#13;
(CVE-2020-26959)&#13;
&#13;
(CVE-2020-26960)&#13;
&#13;
(CVE-2020-26961)&#13;
&#13;
(CVE-2020-26965)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2023-1672</guid>
    </item>
    <item>
      <title>openSUSE-SU-2020:2020-1 — Security update for MozillaFirefox</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2020:2020-1</link>
      <description>&lt;p&gt;Security update for MozillaFirefox&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for MozillaFirefox&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2020:2020-1</guid>
    </item>
    <item>
      <title>RHSA-2020:5231 — Red Hat Security Advisory: thunderbird security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:5231</link>
      <description>&lt;p&gt;Mozilla: Variable time processing of cross-origin images during drawImage calls Mozilla: Parsing mismatches could confuse and bypass security sanitizer for chrome privileged code Mozilla: Fullscreen could be enabled without displaying the security UI Mozilla: XSS through paste (manual and clipboard API) Mozilla: Requests intercepted through ServiceWorkers lacked MIME type restrictions Mozilla: Use-after-free in WebRequestService Mozilla: Potential use-after-free in uses of nsTArray Mozilla: DoH did not filter IPv4 mapped IP Addresses Mozilla: Software keyboards may have remembered typed passwords Mozilla: Memory safety bugs fixed in Firefox 83 and Firefox ESR 78.5&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mozilla: Variable time processing of cross-origin images during drawImage calls Mozilla: Parsing mismatches could confuse and bypass security sanitizer for chrome privileged code Mozilla: Fullscreen could be enabled without displaying the security UI Mozilla: XSS through paste (manual and clipboard API) Mozilla: Requests intercepted through ServiceWorkers lacked MIME type restrictions Mozilla: Use-after-free in WebRequestService Mozilla: Potential use-after-free in uses of nsTArray Mozilla: DoH did not filter IPv4 mapped IP Addresses Mozilla: Software keyboards may have remembered typed passwords Mozilla: Memory safety bugs fixed in Firefox 83 and Firefox ESR 78.5&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:5231</guid>
    </item>
    <item>
      <title>SUSE-SU-2020:14548-1 — Security update for MozillaFirefox</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2020:14548-1</link>
      <description>&lt;p&gt;Security update for MozillaFirefox&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for MozillaFirefox&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2020:14548-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2020-26953</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-26953</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: firefox, Ubuntu:18.04:LTS: firefox, Ubuntu:18.04:LTS: thunderbird, Ubuntu:18.04:LTS: mozjs52, Ubuntu:18.04:LTS: mozjs38, Ubuntu:20.04:LTS: firefox, Ubuntu:20.04:LTS: thunderbird, Ubuntu:20.04:LTS: mozjs68, Ubuntu:20.04:LTS: mozjs52&lt;/p&gt;
&lt;p&gt;It was possible to cause the browser to enter fullscreen mode without displaying the security UI; thus making it possible to attempt a phishing attack or otherwise confuse the user. This vulnerability affects Firefox &amp;lt; 83, Firefox ESR &amp;lt; 78.5, and Thunderbird &amp;lt; 78.5.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: firefox, Ubuntu:18.04:LTS: firefox, Ubuntu:18.04:LTS: thunderbird, Ubuntu:18.04:LTS: mozjs52, Ubuntu:18.04:LTS: mozjs38, Ubuntu:20.04:LTS: firefox, Ubuntu:20.04:LTS: thunderbird, Ubuntu:20.04:LTS: mozjs68, Ubuntu:20.04:LTS: mozjs52&lt;/p&gt;
&lt;p&gt;It was possible to cause the browser to enter fullscreen mode without displaying the security UI; thus making it possible to attempt a phishing attack or otherwise confuse the user. This vulnerability affects Firefox &amp;lt; 83, Firefox ESR &amp;lt; 78.5, and Thunderbird &amp;lt; 78.5.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-26953</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0337 — Mozilla Firefox und Thunderbird: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0337</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Mozilla Firefox, Mozilla Firefox ESR, Mozilla Thunderbird ausnutzen, um beliebigen Programmcode mit Benutzerrechten auszuführen, den Speicher zu korrumpieren, Daten zu manipulieren, vertrauliche Daten einzusehen, Sicherheitsmechanismen zu umgehen oder einen Cross Site Scripting Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Mozilla Firefox, Mozilla Firefox ESR, Mozilla Thunderbird ausnutzen, um beliebigen Programmcode mit Benutzerrechten auszuführen, den Speicher zu korrumpieren, Daten zu manipulieren, vertrauliche Daten einzusehen, Sicherheitsmechanismen zu umgehen oder einen Cross Site Scripting Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0337</guid>
    </item>
  </channel>
</rss>
