Sploitus

CVE-2020-26960

No indexed exploits for CVE-2020-26960 yet

If the Compact() method was called on an nsTArray, the array could have been reallocated without updating other pointers, leading to a potential use-after-free and exploitable crash. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.

Mozilla Firefox
< 83.0
Mozilla Firefox Esr
< 78.5
Mozilla Thunderbird
< 78.5
Fix
Available
CVSS 2.0
9.3 HIGH
CVSS 3.1
8.8 HIGH
EPSS
1.5% (73th percentile)
Weakness
CWE-416
NVD status
Modified
Published
2020-12-09
CVE-2020-26960 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2020-26960 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2020-26960 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.