Mozilla Firefox, Focus and Thunderbird Vulnerabilities

Mozilla Firefox, Focus and Thunderbird Vulnerabilities

2 critical* vulnerabilities affecting Firefox, Focus and Thunderbird products have been released by Mozilla.

Mozilla Firefox, Focus and Thunderbird Vulnerabilities

There have been reports of attacks in the wild abusing these flaws (For all these vulnerabilities, no analysis has been made and no CVSS scores have been assigned by NIST yet).

Affected Systems

  • Firefox versions below 97.0.2
  • Firefox ESR versions below 91.6.1
  • Firefox for Android versions below 97.3
  • Focus versions below 97.3
  • Thunderbird versions below 91.6.2
  • IoC’s

    -

    Recommended Solution(s)

    It is highly recommended that users update their above-mentioned products to the versions stated below.

  • Firefox version 97.0.2
  • Firefox ESR version 91.6.1
  • Firefox for Android version 97.3
  • Focus version 97.3
  • Thunderbird version 91.6.2
  • CVE / CWE

    CVE-2022-26485, CVE-2022-26486

    Related Website(s)

    * Vulnerabilities with a CVSS 3.1 score between 7.0 and 8.9 are evaluated to be “high” whereas vulnerabilities with a CVSS 3.1 score between 9.0 and 10.0 are evaluated to be “critical”.