Loading
A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This can allow for an exploitable crash. We are aware of targeted attacks in the wild abusing this flaw. This vulnerability affects Firefox ESR < 60.7.1, Firefox < 67.0.3, and Thunderbird < 60.7.2.
Use CWE-843, Mozilla vendor hub and Firefox product page to widen CVE-2019-11707 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-6776, CVE-2026-6784 and CVE-2026-6782 for nearby disclosures in the same product family.