CVE-2026-8093
published 2026-05-07CVE-2026-8093: Memory safety bugs present in Firefox 150.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these…
PriorityP346high8.1CVSS 3.1
AVNACHPRNUINSUCHIHAH
EPSS
0.32%
24.4th percentile
Memory safety bugs present in Firefox 150.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 150.0.2 and Thunderbird 150.0.2.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | < Firefox 150.0.2 | Firefox 150.0.2 |
| mozilla | firefox | < 150.0.2 | 150.0.2 |
| mozilla | thunderbird | < Thunderbird 150.0.2 | Thunderbird 150.0.2 |
| mozilla | thunderbird | < 150.0.2 | 150.0.2 |
CVSS provenance
nvdv3.18.1HIGHCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
vendor_redhat8.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
firefox: Memory safety bugs fixed in Firefox 150.0.2
vendor_redhat·2026-05-07·CVSS 8.1
CVE-2026-8093 [HIGH] CWE-120 firefox: Memory safety bugs fixed in Firefox 150.0.2
firefox: Memory safety bugs fixed in Firefox 150.0.2
A flaw was found in Firefox. The Mozilla Foundation's Security Advisory describes the following issue:
Memory safety bugs present in Firefox 150.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
Statement: Red Hat Product Security rates the severity of this flaw as determined by the Mozilla Foundation Security Advisory.
Package: firefox (Red Hat Enterprise Linux 10) - Not affected
Package: rhel10/firefox-flatpak (Red Hat Enterprise Linux 10) - Not affected
Package: firefox (Red Hat Enterprise Linux 6) - Not affected
Package: firefox (Red Hat Enterprise Linux 7) - Not affected
Package: firefox (Red Hat Enterprise Linux 8
Mozilla
Mozilla Foundation Security Advisory 2026-40: CVE-2026-8093
vendor_mozilla·CVSS 7.5
CVE-2026-8093 [HIGH] Mozilla Foundation Security Advisory 2026-40: CVE-2026-8093
Mozilla Foundation Security Advisory 2026-40
CVE: CVE-2026-8093
Product: Firefox
Impact: high
Fixed in: Firefox 150.0.2
Mozilla
Mozilla Foundation Security Advisory 2026-43: CVE-2026-8093
vendor_mozilla·CVSS 8.1
CVE-2026-8093 [HIGH] Mozilla Foundation Security Advisory 2026-43: CVE-2026-8093
Mozilla Foundation Security Advisory 2026-43
CVE: CVE-2026-8093
Product: Thunderbird
Impact: high
Fixed in: Thunderbird 150.0.2
GHSA
GHSA-q57p-jr92-jcv9: Memory safety bugs present in Firefox 150
ghsa_unreviewed·2026-05-07
CVE-2026-8093 [HIGH] CWE-119 GHSA-q57p-jr92-jcv9: Memory safety bugs present in Firefox 150
Memory safety bugs present in Firefox 150.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 150.0.2.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-8093 firefox: Memory safety bugs fixed in Firefox 150.0.2
bugzilla·2026-05-07·CVSS 8.1
CVE-2026-8093 [HIGH] CVE-2026-8093 firefox: Memory safety bugs fixed in Firefox 150.0.2
CVE-2026-8093 firefox: Memory safety bugs fixed in Firefox 150.0.2
Memory safety bugs present in Firefox 150.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 150.0.2.
Bugzilla
CVE-2026-31958 tornado-python: Tornado: Denial of Service via large multipart bodies
bugzilla·2026-03-11·CVSS 8.7
CVE-2026-31958 [HIGH] CVE-2026-31958 tornado-python: Tornado: Denial of Service via large multipart bodies
CVE-2026-31958 tornado-python: Tornado: Denial of Service via large multipart bodies
Tornado is a Python web framework and asynchronous networking library. In versions of Tornado prior to 6.5.5, the only limit on the number of parts in multipart/form-data is the max_body_size setting (default 100MB). Since parsing occurs synchronously on the main thread, this creates the possibility of denial-of-service due to the cost of parsing very large multipart bodies with many parts. This vulnerability is fixed in 6.5.5.
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2026:8093 https://access.redhat.com/errata/RHSA-2026:8093
https://bugzilla.mozilla.org/buglist.cgi?bug_id=1981270%2C2027154%2C2028332%2C2029327%2C2029894%2C2032189%2C2034837%2C2035968%2C2036256https://www.mozilla.org/security/advisories/mfsa2026-40/https://www.mozilla.org/security/advisories/mfsa2026-43/https://access.redhat.com/security/cve/CVE-2026-8093https://bugzilla.redhat.com/show_bug.cgi?id=2467701https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-8093.json
2026-05-07
Published