{"id":"CGA-g26q-5q2p-j77m","modified":"2026-07-17T20:12:18.128362851Z","published":"2026-07-01T10:28:30Z","withdrawn":"2026-07-17T20:12:18.128362696Z","related":["CVE-2026-2785","GHSA-3px2-2xc4-mxr2"],"affected":[{"package":{"name":"firefox","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/firefox"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"140.8.0-r0"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-g26q-5q2p-j77m.json"}},{"package":{"name":"firefox-esr","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/firefox-esr"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"140.8.0-r0"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-g26q-5q2p-j77m.json"}},{"package":{"name":"firefox","ecosystem":"Wolfi","purl":"pkg:apk/wolfi/firefox"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"140.8.0-r0"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-g26q-5q2p-j77m.json"}}],"schema_version":"1.7.5"}