Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In January 2026
Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 147, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.
CVSS Score
8.0
EPSS Score
0.004
Published
2026-01-13
Sandbox escape due to incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 147, Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.
CVSS Score
9.8
EPSS Score
0.005
Published
2026-01-13
Sandbox escape due to integer overflow in the Graphics component. This vulnerability was fixed in Firefox 147, Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.
CVSS Score
8.8
EPSS Score
0.006
Published
2026-01-13
Sandbox escape in the Messaging System component. This vulnerability was fixed in Firefox 147 and Thunderbird 147.
CVSS Score
10.0
EPSS Score
0.003
Published
2026-01-13
Use-after-free in the IPC component. This vulnerability was fixed in Firefox 147, Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.
CVSS Score
8.8
EPSS Score
0.004
Published
2026-01-13
Information disclosure in the Networking component. This vulnerability was fixed in Firefox 147, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.
CVSS Score
5.3
EPSS Score
0.004
Published
2026-01-13
Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 147, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.
CVSS Score
9.8
EPSS Score
0.004
Published
2026-01-13
Zohocorp ManageEngine PAM360 versions before 8202; Password Manager Pro versions before 13221; Access Manager Plus versions prior to 4401 are vulnerable to an authorization issue in the initiate remote session functionality.
CVSS Score
8.1
EPSS Score
0.007
Published
2026-01-13
Zohocorp ManageEngine ADManager Plus versions below 7230 are vulnerable to Path Traversal in the User Management module
CVSS Score
5.5
EPSS Score
0.005
Published
2026-01-13
Zohocorp ManageEngine ADSelfService Plus versions before 6519 are vulnerable to Authentication Bypass due to improper filter configurations.
CVSS Score
9.1
EPSS Score
0.014
Published
2026-01-13


Contact Us

Shodan ® - All rights reserved