BlackTreeCVE IntelligenceOfficial source evidencewww.mozilla.orgVersioned article
Official source article · www.mozilla.org
Security Vulnerabilities fixed in Firefox ESR 115.39 — Mozilla
BlackTree keeps a versioned source snapshot and links it to relevant CVE reports. The publisher remains authoritative for product applicability, release details and installation guidance.
Read the official article ↗Publisherwww.mozilla.org
Article IDNo stable ID in source URL
Verified snapshot27 Sept 2026, 02:00 UTC
Linked CVEs13
Linked CVE reports
These are source relationships, not a claim that this article fixes every affected product or branch.
- CVE-2026-74990Internally found bugs fixed in Thunderbird ESR 140.14, Thunderbird ESR 153.1 and Thunderbird 154
- CVE-2026-74943Use-after-free in the Graphics: ImageLib component
- CVE-2026-74940Use-after-free in the Graphics: Text component
- CVE-2026-74934Site isolation issue in the Graphics: CanvasWebGL component
- CVE-2026-74948Information disclosure in the Graphics component
- CVE-2026-74945Information disclosure in the Graphics: Text component
- CVE-2026-74935Privilege escalation in the DOM: Networking component
- CVE-2026-74939Privilege escalation in the DOM: Navigation component
- CVE-2026-74942Privilege escalation in the Remote Settings Client component
- CVE-2026-74946Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component
- CVE-2026-74969Use-after-free in the Layout: Text and Fonts component
- CVE-2026-74974Same-origin policy bypass in the Graphics: ImageLib component
- CVE-2026-74973Race condition, use-after-free in the Graphics component
Source and provenance
Original title: Security Vulnerabilities fixed in Firefox ESR 115.39 — Mozilla. Captured 27 Sept 2026, 02:00 UTC. The stored article is used for enrichment and change detection; BlackTree does not republish the publisher's full text here.
Open the publisher's current version ↗