CVE-2026-0889

Description

Denial-of-service in the DOM: Service Workers component. This vulnerability affects Firefox < 147 and Thunderbird < 147.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.022

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities are fixed in Mozilla Firefox (Microsoft Store) 147Windows
Multiple vulnerabilities are fixed in Mozilla Firefox (147.0)Windows
Multiple vulnerabilities are fixed in Mozilla Firefox (x64) (147.0)Windows
Multiple vulnerabilities are fixed in Mozilla Thunderbird (147.0)Windows
Multiple vulnerabilities are fixed in Mozilla Thunderbird (x64) (147.0)Windows
Multiple vulnerabilities are fixed in Mozilla Firefox For Mac (147.0)Mac
Multiple vulnerabilities are fixed in Mozilla Firefox For Mac (147.0.1)Mac
Multiple vulnerabilities are fixed in Mozilla Firefox For Mac (147.0.2)Mac
Multiple vulnerabilities are fixed in Mozilla Firefox For Mac (147.0.3)Mac
Multiple vulnerabilities are fixed in Mozilla Firefox For Mac (147.0.4)Mac

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-354973Mozilla Firefox (147.0)
PATCH-354974Mozilla Firefox (x64) (147.0)
PATCH-354979Mozilla Thunderbird (147.0)
PATCH-354980Mozilla Thunderbird (x64) (147.0)
PATCH-613630Mozilla Firefox For Mac (147.0.4)
PATCH-613630Mozilla Firefox For Mac (147.0.4)
PATCH-613630Mozilla Firefox For Mac (147.0.4)
PATCH-613630Mozilla Firefox For Mac (147.0.4)
PATCH-613630Mozilla Firefox For Mac (147.0.4)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234