CISA Known Exploited Vulnerability

CVE-2019-17026

Mozilla · Firefox and Thunderbird

Mozilla Firefox And Thunderbird Type Confusion Vulnerability

Date added
BOD 22-01 due date
CWE CWE-843
Ransomware Unknown

CISA description

Mozilla Firefox and Thunderbird contain a type confusion vulnerability due to incorrect alias information in the IonMonkey JIT compiler when setting array elements.

Required action

Apply updates per vendor instructions.