{
    "document": {
        "category": "csaf_base",
        "csaf_version": "2.0",
        "distribution": {
            "tlp": {
                "label": "WHITE"
            }
        },
        "lang": "en",
        "notes": [
            {
                "category": "legal_disclaimer",
                "text": "The Netherlands Cyber Security Center (henceforth: NCSC-NL) maintains this portal to enhance access to its information and vulnerabilities. The use of this information is subject to the following terms and conditions:\n\nThe vulnerabilities disclosed in this portal are gathered by NCSC-NL from a variety of open sources, which the user can retrieve from other platforms. NCSC-NL makes every reasonable effort to ensure that the content of this portal is kept up to date, and that it is accurate and complete. Nevertheless, NCSC-NL cannot entirely rule out the possibility of errors, and therefore cannot give any warranty in respect of its completeness, accuracy or real-time keeping up-to-date. NCSC-NL does not control nor guarantee the accuracy, relevance, timeliness or completeness of information obtained from these external sources. The vulnerabilities disclosed in this portal are intended solely for the convenience of professional parties to take appropriate measures to manage the risks posed to the cybersecurity. No rights can be derived from the information provided therein.\n\nNCSC-NL and the Kingdom of the Netherlands assume no legal liability or responsibility for any damage resulting from either the use or inability of use of the vulnerabilities disclosed in this portal. This includes damage resulting from the inaccuracy of incompleteness of the information contained in it.\nThe information on this page is subject to Dutch law. All disputes related to or arising from the use of this portal regarding the disclosure of vulnerabilities will be submitted to the competent court in The Hague. This choice of means also applies to the court in summary proceedings."
            }
        ],
        "publisher": {
            "category": "coordinator",
            "contact_details": "cert@ncsc.nl",
            "name": "National Cyber Security Centre",
            "namespace": "https://www.ncsc.nl/"
        },
        "title": "CVE-2026-2798",
        "tracking": {
            "current_release_date": "2026-03-26T15:37:12.240021Z",
            "generator": {
                "date": "2026-02-17T15:00:00Z",
                "engine": {
                    "name": "V.E.L.M.A",
                    "version": "1.7"
                }
            },
            "id": "CVE-2026-2798",
            "initial_release_date": "2026-02-24T14:33:35.869541Z",
            "revision_history": [
                {
                    "date": "2026-02-24T14:33:35.869541Z",
                    "number": "1",
                    "summary": "CVE created.| Source created.| CVE status created. (valid)| Description created for source.| References created (2)."
                },
                {
                    "date": "2026-02-24T14:33:46.043796Z",
                    "number": "2",
                    "summary": "NCSC Score created."
                },
                {
                    "date": "2026-02-24T14:38:57.159000Z",
                    "number": "3",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| Products connected (1).| References created (2)."
                },
                {
                    "date": "2026-02-24T14:38:59.203808Z",
                    "number": "4",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-24T15:35:07.912726Z",
                    "number": "5",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-24T18:22:28.675023Z",
                    "number": "6",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| Products connected (1).| References created (1).| Vendor_assessment created."
                },
                {
                    "date": "2026-02-24T18:24:16.749661Z",
                    "number": "7",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| Products connected (1).| References created (1).| Vendor_assessment created."
                },
                {
                    "date": "2026-02-24T18:43:27.491760Z",
                    "number": "8",
                    "summary": "Source created.| CVE status created. (valid)"
                },
                {
                    "date": "2026-02-24T19:16:40.394766Z",
                    "number": "9",
                    "summary": "Description removed for source.| Description created for source.| CVSS created.| Products connected (1).| References created (1).| CWES updated (1).| Unknown change."
                },
                {
                    "date": "2026-02-24T19:16:41.885632Z",
                    "number": "10",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-24T19:29:04.316510Z",
                    "number": "11",
                    "summary": "Description removed for source.| Description created for source.| CVSS created.| References created (1).| CWES updated (1)."
                },
                {
                    "date": "2026-02-24T19:29:07.482562Z",
                    "number": "12",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-24T21:18:53.516850Z",
                    "number": "13",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-25T02:41:44.704501Z",
                    "number": "14",
                    "summary": "Source connected.| CVE status created. (valid)"
                },
                {
                    "date": "2026-02-25T06:43:28.207132Z",
                    "number": "15",
                    "summary": "Description created for source."
                },
                {
                    "date": "2026-02-25T11:06:09.009224Z",
                    "number": "16",
                    "summary": "Source connected.| CVE status created. (valid)| Products connected (6).| References created (8)."
                },
                {
                    "date": "2026-02-25T11:06:11.356675Z",
                    "number": "17",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-25T15:13:33.970851Z",
                    "number": "18",
                    "summary": "Source created.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-02-25T15:13:39.942043Z",
                    "number": "19",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-25T16:29:06.633018Z",
                    "number": "20",
                    "summary": "Products connected (2).| Product Identifiers created (2)."
                },
                {
                    "date": "2026-02-25T16:29:16.941182Z",
                    "number": "21",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-25T18:18:06.187169Z",
                    "number": "22",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-26T09:42:00.699991Z",
                    "number": "23",
                    "summary": "Products connected (3).| References created (5)."
                },
                {
                    "date": "2026-02-26T09:42:03.007987Z",
                    "number": "24",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-26T13:20:41.071618Z",
                    "number": "25",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-27T09:52:07.270440Z",
                    "number": "26",
                    "summary": "Products connected (2).| References created (7)."
                },
                {
                    "date": "2026-02-27T09:52:16.739273Z",
                    "number": "27",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-28T00:28:18.361381Z",
                    "number": "28",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (17).| Product Identifiers created (5).| References created (4).| Vendor_assessment created."
                },
                {
                    "date": "2026-02-28T00:28:21.951090Z",
                    "number": "29",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-28T19:27:57.034822Z",
                    "number": "30",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-02T10:59:31.451317Z",
                    "number": "31",
                    "summary": "References created (10)."
                },
                {
                    "date": "2026-03-02T18:17:56.161937Z",
                    "number": "32",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-03T11:17:35.852772Z",
                    "number": "33",
                    "summary": "Products connected (1).| References created (7)."
                },
                {
                    "date": "2026-03-03T11:17:43.411674Z",
                    "number": "34",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-05T09:25:48.900367Z",
                    "number": "35",
                    "summary": "Products connected (2).| References created (5)."
                },
                {
                    "date": "2026-03-05T09:25:52.084869Z",
                    "number": "36",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-06T10:09:25.033319Z",
                    "number": "37",
                    "summary": "References created (4)."
                },
                {
                    "date": "2026-03-06T10:09:28.857412Z",
                    "number": "38",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-09T09:17:14.571546Z",
                    "number": "39",
                    "summary": "References created (6)."
                },
                {
                    "date": "2026-03-10T10:16:34.395469Z",
                    "number": "40",
                    "summary": "References created (3)."
                },
                {
                    "date": "2026-03-10T10:16:38.462283Z",
                    "number": "41",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-11T10:24:53.217987Z",
                    "number": "42",
                    "summary": "References created (1)."
                },
                {
                    "date": "2026-03-11T10:25:05.094719Z",
                    "number": "43",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-12T10:25:48.671118Z",
                    "number": "44",
                    "summary": "References created (2)."
                },
                {
                    "date": "2026-03-12T10:25:54.981279Z",
                    "number": "45",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-13T08:24:38.850266Z",
                    "number": "46",
                    "summary": "References created (1)."
                },
                {
                    "date": "2026-03-20T09:39:08.191729Z",
                    "number": "47",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-03-20T09:39:10.827926Z",
                    "number": "48",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-20T20:19:23.598549Z",
                    "number": "49",
                    "summary": "Products connected (1).| References created (2)."
                },
                {
                    "date": "2026-03-20T20:19:36.350362Z",
                    "number": "50",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-26T11:41:27.946491Z",
                    "number": "51",
                    "summary": "References created (1)."
                },
                {
                    "date": "2026-03-26T11:41:30.351307Z",
                    "number": "52",
                    "summary": "NCSC Score updated."
                }
            ],
            "status": "interim",
            "version": "52"
        }
    },
    "product_tree": {
        "branches": [
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1330296",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:amazon:linux_2:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Amazon Linux 2"
                    }
                ],
                "category": "vendor",
                "name": "Amazon"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1295663",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Debian Linux"
                    }
                ],
                "category": "vendor",
                "name": "Debian"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/148",
                                "product": {
                                    "name": "vers:unknown/148",
                                    "product_id": "CSAFPID-5694056"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<148",
                                "product": {
                                    "name": "vers:unknown/<148",
                                    "product_id": "CSAFPID-5702090"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/ios <147.4",
                                "product": {
                                    "name": "vers:unknown/ios <147.4",
                                    "product_id": "CSAFPID-5702089"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unspecified|<148",
                                "product": {
                                    "name": "vers:unknown/unspecified|<148",
                                    "product_id": "CSAFPID-5687484"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Firefox"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<115.33",
                                "product": {
                                    "name": "vers:unknown/<115.33",
                                    "product_id": "CSAFPID-5702086"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<140.8",
                                "product": {
                                    "name": "vers:unknown/<140.8",
                                    "product_id": "CSAFPID-5702085"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Firefox ESR"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/148",
                                "product": {
                                    "name": "vers:unknown/148",
                                    "product_id": "CSAFPID-5694057"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<140.8",
                                "product": {
                                    "name": "vers:unknown/<140.8",
                                    "product_id": "CSAFPID-5702087"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<148",
                                "product": {
                                    "name": "vers:unknown/<148",
                                    "product_id": "CSAFPID-5702088"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unspecified|<148",
                                "product": {
                                    "name": "vers:unknown/unspecified|<148",
                                    "product_id": "CSAFPID-5695999"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Thunderbird"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<148.0",
                                "product": {
                                    "name": "vers:unknown/<148.0",
                                    "product_id": "CSAFPID-5702702",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:a:mozilla:firefox:*:*:*:*:-:*:*:*"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "firefox"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<148.0",
                                "product": {
                                    "name": "vers:unknown/<148.0",
                                    "product_id": "CSAFPID-5702704",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:a:mozilla:thunderbird:*:*:*:*:-:*:*:*"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "thunderbird"
                    }
                ],
                "category": "vendor",
                "name": "Mozilla"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1337880",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:igel:os:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "IGEL OS"
                    }
                ],
                "category": "vendor",
                "name": "IGEL"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1317177",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:oracle:linux:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Oracle Linux"
                    }
                ],
                "category": "vendor",
                "name": "Oracle"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1330300",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:resf:rocky_linux:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "RESF Rocky Linux"
                    }
                ],
                "category": "vendor",
                "name": "RESF"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1317175",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/10",
                                "product": {
                                    "name": "vers:rpm/10",
                                    "product_id": "CSAFPID-2858634",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:10"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux 10"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/6",
                                "product": {
                                    "name": "vers:rpm/6",
                                    "product_id": "CSAFPID-1439321",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:6"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux 6"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/7",
                                "product": {
                                    "name": "vers:rpm/7",
                                    "product_id": "CSAFPID-1439315",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:7"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux 7"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/8",
                                "product": {
                                    "name": "vers:rpm/8",
                                    "product_id": "CSAFPID-1439317",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:8"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux 8"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/9",
                                "product": {
                                    "name": "vers:rpm/9",
                                    "product_id": "CSAFPID-1439319",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:enterprise_linux:9"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux 9"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2873478"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "firefox"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2873479"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "firefox-flatpak"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2876286"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "thunderbird"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2876285"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "thunderbird-flatpak"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux 10"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1692245"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "firefox"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1692262"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "thunderbird"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux 6"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1459356"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "firefox"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1512164"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "thunderbird"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux 7"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1459357"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "firefox"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1459358"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "thunderbird"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux 8"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1459360"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "firefox"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1459361"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "thunderbird"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux 9"
                    }
                ],
                "category": "vendor",
                "name": "Red Hat"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1317176",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:suse:opensuse:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "SUSE openSUSE"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1317174",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:suse:suse_linux:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "SuSE Linux"
                    }
                ],
                "category": "vendor",
                "name": "SUSE"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1330299",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:canonical:ubuntu_linux:10.04:-:lts"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Ubuntu Linux"
                    }
                ],
                "category": "vendor",
                "name": "Ubuntu"
            }
        ]
    },
    "vulnerabilities": [
        {
            "cve": "CVE-2026-2798",
            "cwe": {
                "id": "CWE-416",
                "name": "Use After Free"
            },
            "notes": [
                {
                    "category": "description",
                    "text": "Use-after-free in the DOM: Core & HTML component",
                    "title": "mozilla - https://www.mozilla.org/en-US/security/advisories/mfsa2026-13/"
                },
                {
                    "category": "description",
                    "text": "Use-after-free in the DOM: Core & HTML component",
                    "title": "mozilla - https://www.mozilla.org/en-US/security/advisories/mfsa2026-16/"
                },
                {
                    "category": "description",
                    "text": "Use-after-free in the DOM: Core & HTML component. This vulnerability affects Firefox < 148 and Thunderbird < 148.",
                    "title": "cveprojectv5 - https://www.cve.org/CVERecord?id=CVE-2026-2798"
                },
                {
                    "category": "description",
                    "text": "Use-after-free in the DOM: Core & HTML component. This vulnerability affects Firefox < 148 and Thunderbird < 148.",
                    "title": "nvd - https://nvd.nist.gov/vuln/detail/CVE-2026-2798"
                },
                {
                    "category": "description",
                    "text": "Use-after-free in the DOM: Core & HTML component. This vulnerability affects Firefox < 148 and Thunderbird < 148.",
                    "title": "debian - https://security-tracker.debian.org/tracker/CVE-2026-2798"
                },
                {
                    "category": "description",
                    "text": "Use-after-free in the DOM: Core & HTML component. This vulnerability affects Firefox < 148 and Thunderbird < 148.\nRed Hat Product Security rates the severity of this flaw as determined by the Mozilla Foundation Security Advisory.",
                    "title": "redhat - https://access.redhat.com/security/cve/CVE-2026-2798"
                },
                {
                    "category": "other",
                    "text": "0.00042",
                    "title": "EPSS"
                },
                {
                    "category": "other",
                    "text": "4.8",
                    "title": "NCSC Score"
                },
                {
                    "category": "other",
                    "text": "There is product data available from a private source, Is related to (a version of) an uncommon product, There is cvss data available from a private source, There is product data available from source Certbundde",
                    "title": "NCSC Score top increasing factors"
                },
                {
                    "category": "other",
                    "text": "The CVSS vector string contains AV:N (Attack Vector: Network), Is related to a product by vendor Amazon, Is related to a product by vendor Debian",
                    "title": "NCSC Score top decreasing factors"
                },
                {
                    "category": "details",
                    "text": "Severity: 3\n",
                    "title": "Vendor assessment"
                },
                {
                    "category": "details",
                    "text": "Severity: 3\n",
                    "title": "Vendor assessment"
                },
                {
                    "category": "details",
                    "text": "Severity: 3\n",
                    "title": "Vendor assessment"
                }
            ],
            "product_status": {
                "fixed": [
                    "CSAFPID-5694056",
                    "CSAFPID-5694057"
                ],
                "known_affected": [
                    "CSAFPID-5687484",
                    "CSAFPID-5695999",
                    "CSAFPID-5702085",
                    "CSAFPID-5702086",
                    "CSAFPID-5702087",
                    "CSAFPID-5702088",
                    "CSAFPID-5702089",
                    "CSAFPID-5702090",
                    "CSAFPID-5702702",
                    "CSAFPID-5702704",
                    "CSAFPID-1295663",
                    "CSAFPID-1317175",
                    "CSAFPID-1317176",
                    "CSAFPID-1317177",
                    "CSAFPID-1330300",
                    "CSAFPID-1317174",
                    "CSAFPID-1330299",
                    "CSAFPID-1337880",
                    "CSAFPID-1330296"
                ],
                "known_not_affected": [
                    "CSAFPID-1439315",
                    "CSAFPID-1439317",
                    "CSAFPID-1439319",
                    "CSAFPID-1439321",
                    "CSAFPID-1459356",
                    "CSAFPID-1459357",
                    "CSAFPID-1459358",
                    "CSAFPID-1459360",
                    "CSAFPID-1459361",
                    "CSAFPID-1512164",
                    "CSAFPID-1692245",
                    "CSAFPID-1692262",
                    "CSAFPID-2858634",
                    "CSAFPID-2873478",
                    "CSAFPID-2873479",
                    "CSAFPID-2876285",
                    "CSAFPID-2876286"
                ]
            },
            "references": [
                {
                    "category": "external",
                    "summary": "Source - nvd",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2798"
                },
                {
                    "category": "external",
                    "summary": "Source raw - nvd",
                    "url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2026-2798"
                },
                {
                    "category": "external",
                    "summary": "Source - cveprojectv5",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2026-2798"
                },
                {
                    "category": "external",
                    "summary": "Source raw - cveprojectv5",
                    "url": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/2xxx/CVE-2026-2798.json"
                },
                {
                    "category": "external",
                    "summary": "Source - mozilla",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2026-13/"
                },
                {
                    "category": "external",
                    "summary": "Source - mozilla",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2026-16/"
                },
                {
                    "category": "external",
                    "summary": "Source - debian",
                    "url": "https://security-tracker.debian.org/tracker/CVE-2026-2798"
                },
                {
                    "category": "external",
                    "summary": "Source - hkcert",
                    "url": "https://www.hkcert.org/security-bulletin/mozilla-products-multiple-vulnerabilities_20260225"
                },
                {
                    "category": "external",
                    "summary": "Source - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-0497.json"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?cve=CVE-2026-2798"
                },
                {
                    "category": "external",
                    "summary": "Source raw - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=0"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-2798"
                },
                {
                    "category": "external",
                    "summary": "Source raw - redhat",
                    "url": "https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2026-2798.json"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=0"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; mozilla; nvd",
                    "url": "https://bugzilla.mozilla.org/show_bug.cgi?id=2014136"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; nvd",
                    "url": "https://www.mozilla.org/security/advisories/mfsa2026-13/"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; nvd",
                    "url": "https://www.mozilla.org/security/advisories/mfsa2026-16/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-0497.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-0497"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2026-12/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2026-13/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2026-14/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2026-15/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2026-16/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.mozilla.org/en-US/security/advisories/mfsa2026-17/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3339"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/QOYQZDLF7VEL3ZUY46SS34MOSIMJTZ3L/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.debian.org/debian-security-announce/2026/msg00057.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3361"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3338"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.debian.org/debian-security-announce/2026/msg00058.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "http://linux.oracle.com/errata/ELSA-2026-3339.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://errata.build.resf.org/RLSA-2026:3361"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://errata.build.resf.org/RLSA-2026:3339"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://errata.build.resf.org/RLSA-2026:3338"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://linux.oracle.com/errata/ELSA-2026-3361.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "http://linux.oracle.com/errata/ELSA-2026-3338.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2026-2798"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2798"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://www.mozilla.org/security/advisories/mfsa2026-13/#CVE-2026-2798"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://www.mozilla.org/security/advisories/mfsa2026-16/#CVE-2026-2798"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3495"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3497"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3493"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.debian.org/debian-lts-announce/2026/02/msg00034.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.debian.org/debian-security-announce/2026/msg00061.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3496"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3494"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/Q7GX3YZM5UTV3V2KG6DNS4MDJZ2U7AUP/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3491"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3492"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3517"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3516"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.suse.com/pipermail/sle-security-updates/2026-March/024523.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3515"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.debian.org/debian-lts-announce/2026/03/msg00000.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://linux.oracle.com/errata/ELSA-2026-3517.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://linux.oracle.com/errata/ELSA-2026-3516.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://errata.build.resf.org/RLSA-2026:3515"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://errata.build.resf.org/RLSA-2026:3516"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://linux.oracle.com/errata/ELSA-2026-3515.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://kb.igel.com/en/security-safety/current/isn-2026-05-firefox-esr-vulnerabilities"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://ubuntu.com/security/notices/USN-8071-1"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://ubuntu.com/security/notices/USN-8071-2"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.suse.com/pipermail/sle-security-updates/2026-March/024583.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.suse.com/pipermail/sle-security-updates/2026-March/024584.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.suse.com/pipermail/sle-security-updates/2026-March/024585.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3978"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3979"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3984"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3980"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3982"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3983"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3981"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:4022"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:3976"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:4260"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.suse.com/pipermail/sle-security-updates/2026-March/024678.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:4432"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.suse.com/pipermail/sle-security-updates/2026-March/024685.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://alas.aws.amazon.com/AL2/ALAS2-2026-3198.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://alas.aws.amazon.com/AL2/ALAS2FIREFOX-2026-054.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.debian.org/debian-lts-announce/2026/03/msg00012.html"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
                        "baseScore": 8.8,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1295663",
                        "CSAFPID-1317174",
                        "CSAFPID-1317175",
                        "CSAFPID-1317176",
                        "CSAFPID-1317177",
                        "CSAFPID-1330296",
                        "CSAFPID-1330299",
                        "CSAFPID-1330300",
                        "CSAFPID-1337880",
                        "CSAFPID-5687484",
                        "CSAFPID-5695999",
                        "CSAFPID-5702085",
                        "CSAFPID-5702086",
                        "CSAFPID-5702087",
                        "CSAFPID-5702088",
                        "CSAFPID-5702089",
                        "CSAFPID-5702090",
                        "CSAFPID-5702702",
                        "CSAFPID-5702704"
                    ]
                }
            ],
            "title": "CVE-2026-2798"
        }
    ]
}