ThreatCluster

Multiple Use-After-Free Vulnerabilities Affect Firefox and Thunderbird

First seen 18 Feb 2026, 10:13 UTC Api.Msrc.Microsoft 81% similarity 48

Article Content

Browse articles
ThreatCluster

Two vulnerabilities have been identified affecting Firefox and Thunderbird. CVE-2023-3600, published on July 12, 2023, could lead to a crash during the worker lifecycle for versions below Firefox 115.0.2 and Thunderbird 115.0.1. CVE-2024-4770, published on May 14, 2024, involves a potential use-after-free crash when saving pages to PDF for versions below Firefox 126 and Thunderbird 115.11.

ThreatCluster AI

Timeline

2023-07-12
CVE-2023-3600 published
2024-05-14
CVE-2024-4770 published
2026-02-18
Article coverage of CVE-2023-3600 and CVE-2024-4770

Community

Browse all →