CVE-2026-12327(mozilla / firefox)

LOWCVSS 8.1 · HIGH

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Memory safety bugs present in Firefox ESR 140.11, Thunderbird ESR 140.11, Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • firefox
  • thunderbird

Affected systems

Vendors
Products
firefoxthunderbird

Deep dive

Full discourse3 posts
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-12327 Memory safety bugs present in Firefox ESR 140.11, Thunderbird ESR 140.11, Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of memory corruption and… https://www.cve.org/CVERecord?id=CVE-2026-12327 ----- Traducción: CVE-2026-12327 Err… http://infoflow.cloud`

    Post summary

    The tweet announces CVE‑2026‑12327, a memory safety bug in Firefox and Thunderbird that can lead to memory corruption.

    0000021
    82 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-12327 Memory safety bugs present in Firefox ESR 140.11, Thunderbird ESR 140.11, Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of memory corruption and… https://www.cve.org/CVERecord?id=CVE-2026-12327

    Post summary

    The text announces CVE‑2026‑12327 as memory safety bugs in several Firefox and Thunderbird releases, noting memory corruption evidence but gives no further exploit or mitigation information.

    00000169
    57.6K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-12327 Memory Safety Bugs in Firefox and Thunderbird ESR 140.11 and 151 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-12327

    Post summary

    The post announces a newly disclosed memory safety vulnerability affecting Firefox and Thunderbird ESR 140.11/151, providing limited technical details but no PoC, exploit, active exploitation, or patch information.

    0000046
    4.0K followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
Appmozillafirefox---
Appmozillafirefox---
Appmozillathunderbird---
Appmozillathunderbird---

Explore more