CyberSec.Space Logo
Back to CVE Browser

CVE-2019-17026

Known Exploited (CISA KEV)HIGH
8.8
CVSS Severity Score
EPSS Score66.0560%
EPSS Percentile86.69th
PublishedMar 2, 2020
Last ModifiedNov 4, 2025

Vulnerability Description

Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a type confusion. We are aware of targeted attacks in the wild abusing this flaw. This vulnerability affects Firefox ESR < 68.4.1, Thunderbird < 68.4.1, and Firefox < 72.0.1.

Affected Platforms (CPE)

πŸ“¦
Mozilla

Firefox

< 68.4.1
πŸ“¦
Mozilla

Firefox

< 72.0.1
πŸ“¦
Mozilla

Thunderbird

< 68.4.1
πŸ’»
Canonical

Ubuntu Linux

= 16.04

References & Advisories

Related Vulnerabilities