Skip to content
Threat Feed
critical advisory

CVE-2026-4729 Memory Safety Vulnerabilities in Firefox and Thunderbird

Firefox 148 and Thunderbird 148 contain memory safety bugs that could potentially be exploited to execute arbitrary code, impacting versions prior to 149.

CVE-2026-4729 describes memory safety vulnerabilities present in Firefox 148 and Thunderbird 148. According to the NVD analysis, some of these bugs exhibit memory corruption, suggesting a potential for exploitation. It is presumed that attackers could potentially exploit these vulnerabilities to achieve arbitrary code execution. Successful exploitation would allow an attacker to perform unauthorized actions, potentially compromising the confidentiality, integrity, and availability of the…

Detection coverage 2

Firefox Thunderbird User Agent Detected

high

Detects HTTP requests with user agents indicating vulnerable Firefox or Thunderbird versions.

sigma tactics: initial_access techniques: T1190 sources: webserver, linux

Suspicious Email Client Process Creation

medium

Detects unusual processes spawned by Thunderbird, potentially indicating exploitation.

sigma tactics: execution techniques: T1204.002 sources: process_creation, windows

Detection queries are kept inside the platform. Get full rules →

Indicators of compromise

1

email