CVE-2026-3847Disclosure(mozilla / firefox)

LOWCVSS 8.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch mozilla firefox systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Memory safety bugs present in Firefox 148.0.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 148.0.2.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-416

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • firefox

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 4 classified signals
  • Peaked 2d ago at 3 mentions (2026-03-10); latest day: 1
  • 5 total mentions across 3 days

Affected systems

Vendors
Products
firefox

Deep dive

Activity timeline5 mentions / 3d
01223Mentions · 2026-03-10: 3Mentions · 2026-03-17: 1Mentions · 2026-03-19: 1Patch / Workaround · 2026-03-10: 1Technical Details · 2026-03-10: 3Technical Details · 2026-03-19: 103-1003-1703-19
Signal classification2 categories
Disclosure
480.0%
Patch
120.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-03-103
Disclosure2Patch1
2026-03-171
Disclosure1
2026-03-191
Disclosure1
Full discourse5 posts
  • CERT-PY@CERTpy
    Disclosure

    ⚠️ Vulnerabilidades en productos Mozilla ❗ CVE-2026-3847 ❗ CVE-2026-3845 ➡️ Más info: https://www.cert.gov.py/vulnerabilidades-en-productos-mozilla-9/ https://t.co/P2QW4i9NeN

    Post summary

    The tweet announces two Mozilla CVEs and links to additional information, but provides no technical details, PoC, exploits, or patch info.

    02021188
    6.6K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-3847 Memory safety bugs present in Firefox 148.0.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have b… https://www.cve.org/CVERecord?id=CVE-2026-3847

    Post summary

    The passage announces memory safety bugs in Firefox 148.0.2 that can lead to memory corruption and potential exploitation. No proof‑of‑concept, exploits, or patch information is provided.

    01011204
    56.8K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Patch

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-3847 - Memory safety bugs fixed in Firefox 148.0.2 Intel Report: https://ift.tt/7gnyLHp

    Post summary

    The alert announces CVE-2026-3847, notes that memory safety bugs were addressed in Firefox 148.0.2, and links to an Intel report.

    0000036
    345 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-3847: HIGH] Memory safety bugs discovered in Firefox 148.0.2 may lead to memory corruption and potential code execution. Vulnerability affects versions prior to 148.0.2.#cve,CVE-2026-3847,#cybersecurity https://cvefind.com/CVE-2026-3847

    Post summary

    The post announces a high‑severity memory safety vulnerability in Firefox pre‑148.0.2 that could lead to code execution.

    0000044
    601 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🟠 CVE-2026-3847 - High Memory safety bugs present in Firefox 148.0.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arb... https://www.thehackerwire.com/vulnerability/CVE-2026-3847/ https://t.co/UmVfbMudcy

    Post summary

    The post discloses a high‑severity memory safety bug in Firefox 148.0.2 that could potentially enable arbitrary code execution, but it provides no PoC, exploit details, patch, or evidence of active exploitation.

    0000033
    133 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appmozillafirefox---

Explore more