[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2016-9066":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T08:55:32.481Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":68,"aliases":69,"duplicate_of":9,"upstream":70,"downstream":71,"duplicates":110,"related":111,"reserved_at":9,"published_at":122,"modified_at":123,"state":124,"summary":125,"references_raw":133,"kevs":181,"epss":182,"epss_history":185,"metrics":421,"affected":431},"CVE-2016-9066","A buffer overflow resulting in a potentially exploitable crash due to memory allocation issues when handling large amounts of incoming data. This vulnerability affects Thunderbird \u003C 45.5, Firefox ESR \u003C 45.5, and Firefox \u003C 50.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-119","Improper Restriction of Operations within the Bounds of a Memory Buffer","The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.","weakness","Stable","Class","High",[20,24,28,32,36,40,44,48,52,56,60,64],{"id":21,"name":22,"techniques":23},"CAPEC-10","Buffer Overflow via Environment Variables",[],{"id":25,"name":26,"techniques":27},"CAPEC-100","Overflow Buffers",[],{"id":29,"name":30,"techniques":31},"CAPEC-123","Buffer Manipulation",[],{"id":33,"name":34,"techniques":35},"CAPEC-14","Client-side Injection-induced Buffer Overflow",[],{"id":37,"name":38,"techniques":39},"CAPEC-24","Filter Failure through Buffer Overflow",[],{"id":41,"name":42,"techniques":43},"CAPEC-42","MIME Conversion",[],{"id":45,"name":46,"techniques":47},"CAPEC-44","Overflow Binary Resource File",[],{"id":49,"name":50,"techniques":51},"CAPEC-45","Buffer Overflow via Symbolic Links",[],{"id":53,"name":54,"techniques":55},"CAPEC-46","Overflow Variables and Tags",[],{"id":57,"name":58,"techniques":59},"CAPEC-47","Buffer Overflow via Parameter Expansion",[],{"id":61,"name":62,"techniques":63},"CAPEC-8","Buffer Overflow in an API Call",[],{"id":65,"name":66,"techniques":67},"CAPEC-9","Buffer Overflow in Local Command-Line Utilities",[],[],[],[],[72,74,76,78,80,82,84,86,88,90,92,94,96,98,100,102,104,106,108],{"_key":73},"RHSA-2016:2780",{"_key":75},"OPENSUSE-SU-2024:10071-1",{"_key":77},"SUSE-SU-2016:3014-1",{"_key":79},"SUSE-SU-2016:3080-1",{"_key":81},"SUSE-SU-2016:3105-1",{"_key":83},"OPENSUSE-SU-2016:3019-1",{"_key":85},"OPENSUSE-SU-2024:10230-1",{"_key":87},"OPENSUSE-SU-2024:14572-1",{"_key":89},"DLA-730-1",{"_key":91},"DLA-752-1",{"_key":93},"DSA-3716-1",{"_key":95},"DSA-3730-1",{"_key":97},"MGASA-2016-0379",{"_key":99},"MGASA-2016-0409",{"_key":101},"MGASA-2017-0323",{"_key":103},"UBUNTU-CVE-2016-9066",{"_key":105},"USN-3124-1",{"_key":107},"USN-3141-1",{"_key":109},"DEBIAN-CVE-2016-9066",[],[112,113,114,115,116,117,118,119,120,121],{"_key":75},{"_key":77},{"_key":79},{"_key":81},{"_key":83},{"_key":85},{"_key":87},{"_key":97},{"_key":99},{"_key":101},"2018-06-11T21:00:00.000Z","2024-08-06T02:42:09.998Z","Modified",{"cisa_kev":126,"cisa_ransomware":126,"cisa_vendor":9,"epss_severity":127,"epss_score":128,"severity":127,"severity_score":129,"severity_version":130,"severity_source":131,"severity_vector":132,"severity_status":124},false,"high",0.20609,7.5,"v3.0","nvd","CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",[134,142,148,154,159,164,168,173,177],{"url":135,"sources":136,"tags":138},"https://www.debian.org/security/2016/dsa-3730",[137,131],"cve.org",[139,140,141],"Vendor Advisory","X Refsource DEBIAN","Third Party Advisory",{"url":143,"sources":144,"tags":145},"http://www.securitytracker.com/id/1037298",[137,131],[146,147,141],"VDB Entry","X Refsource SECTRACK",{"url":149,"sources":150,"tags":151},"https://bugzilla.mozilla.org/show_bug.cgi?id=1299686",[137,131],[152,153,139],"X Refsource CONFIRM","Issue Tracking",{"url":155,"sources":156,"tags":157},"https://security.gentoo.org/glsa/201701-15",[137,131],[139,158,141],"X Refsource GENTOO",{"url":160,"sources":161,"tags":162},"http://www.securityfocus.com/bid/94336",[137,131],[146,163,141],"X Refsource BID",{"url":165,"sources":166,"tags":167},"https://www.mozilla.org/security/advisories/mfsa2016-93/",[137,131],[152,139],{"url":169,"sources":170,"tags":171},"http://rhn.redhat.com/errata/RHSA-2016-2780.html",[137,131],[139,172,141],"X Refsource REDHAT",{"url":174,"sources":175,"tags":176},"https://www.mozilla.org/security/advisories/mfsa2016-89/",[137,131],[152,139],{"url":178,"sources":179,"tags":180},"https://www.mozilla.org/security/advisories/mfsa2016-90/",[137,131],[152,139],[],{"date":183,"score":128,"percentile":184},"2026-06-04",0.95691,[186,189,191,193,196,198,200,202,205,208,210,213,215,217,220,223,226,229,232,235,238,240,243,246,249,251,254,257,260,263,265,268,270,272,275,278,281,284,287,290,293,296,299,302,305,308,310,312,315,317,319,322,325,327,330,333,335,337,340,343,346,349,352,354,357,359,361,363,365,367,369,371,373,375,378,381,383,385,387,390,393,396,399,402,405,407,410,412,415,418],{"date":187,"score":128,"percentile":188},"2025-11-04",0.95333,{"date":190,"score":128,"percentile":188},"2025-11-05",{"date":192,"score":128,"percentile":188},"2025-11-06",{"date":194,"score":128,"percentile":195},"2025-11-07",0.95334,{"date":197,"score":128,"percentile":188},"2025-11-08",{"date":199,"score":128,"percentile":188},"2025-11-09",{"date":201,"score":128,"percentile":195},"2025-11-10",{"date":203,"score":128,"percentile":204},"2025-11-11",0.95335,{"date":206,"score":128,"percentile":207},"2025-11-12",0.95338,{"date":209,"score":128,"percentile":207},"2025-11-13",{"date":211,"score":128,"percentile":212},"2025-11-14",0.95339,{"date":214,"score":128,"percentile":204},"2025-11-15",{"date":216,"score":128,"percentile":207},"2025-11-16",{"date":218,"score":128,"percentile":219},"2025-11-17",0.9534,{"date":221,"score":128,"percentile":222},"2025-11-18",0.95171,{"date":224,"score":128,"percentile":225},"2025-11-19",0.95172,{"date":227,"score":128,"percentile":228},"2025-11-20",0.95175,{"date":230,"score":128,"percentile":231},"2025-11-21",0.95348,{"date":233,"score":128,"percentile":234},"2025-11-22",0.95347,{"date":236,"score":128,"percentile":237},"2025-11-23",0.95346,{"date":239,"score":128,"percentile":237},"2025-11-24",{"date":241,"score":128,"percentile":242},"2025-11-25",0.95349,{"date":244,"score":128,"percentile":245},"2025-11-26",0.95352,{"date":247,"score":128,"percentile":248},"2025-11-27",0.95354,{"date":250,"score":128,"percentile":245},"2025-11-28",{"date":252,"score":128,"percentile":253},"2025-11-29",0.95355,{"date":255,"score":128,"percentile":256},"2025-11-30",0.95353,{"date":258,"score":128,"percentile":259},"2025-12-01",0.95387,{"date":261,"score":128,"percentile":262},"2025-12-02",0.95385,{"date":264,"score":128,"percentile":259},"2025-12-03",{"date":266,"score":128,"percentile":267},"2025-12-04",0.95351,{"date":269,"score":128,"percentile":253},"2025-12-05",{"date":271,"score":128,"percentile":253},"2025-12-06",{"date":273,"score":128,"percentile":274},"2025-12-07",0.95361,{"date":276,"score":128,"percentile":277},"2025-12-08",0.95362,{"date":279,"score":128,"percentile":280},"2025-12-09",0.95366,{"date":282,"score":128,"percentile":283},"2025-12-10",0.9537,{"date":285,"score":128,"percentile":286},"2025-12-11",0.95372,{"date":288,"score":128,"percentile":289},"2025-12-12",0.95375,{"date":291,"score":128,"percentile":292},"2025-12-13",0.95376,{"date":294,"score":128,"percentile":295},"2025-12-14",0.95374,{"date":297,"score":128,"percentile":298},"2025-12-15",0.95378,{"date":300,"score":128,"percentile":301},"2025-12-16",0.9538,{"date":303,"score":128,"percentile":304},"2025-12-17",0.95382,{"date":306,"score":128,"percentile":307},"2025-12-18",0.95384,{"date":309,"score":128,"percentile":262},"2025-12-19",{"date":311,"score":128,"percentile":262},"2025-12-20",{"date":313,"score":128,"percentile":314},"2025-12-21",0.95386,{"date":316,"score":128,"percentile":314},"2025-12-22",{"date":318,"score":128,"percentile":314},"2025-12-23",{"date":320,"score":128,"percentile":321},"2025-12-24",0.9539,{"date":323,"score":128,"percentile":324},"2025-12-25",0.95394,{"date":326,"score":128,"percentile":324},"2025-12-26",{"date":328,"score":128,"percentile":329},"2025-12-27",0.95419,{"date":331,"score":128,"percentile":332},"2025-12-28",0.95389,{"date":334,"score":128,"percentile":332},"2025-12-29",{"date":336,"score":128,"percentile":321},"2025-12-30",{"date":338,"score":128,"percentile":339},"2025-12-31",0.95393,{"date":341,"score":128,"percentile":342},"2026-01-01",0.95434,{"date":344,"score":128,"percentile":345},"2026-01-02",0.95429,{"date":347,"score":128,"percentile":348},"2026-01-03",0.95426,{"date":350,"score":128,"percentile":351},"2026-01-04",0.95383,{"date":353,"score":128,"percentile":301},"2026-01-05",{"date":355,"score":128,"percentile":356},"2026-01-06",0.95381,{"date":358,"score":128,"percentile":356},"2026-01-07",{"date":360,"score":128,"percentile":307},"2026-01-08",{"date":362,"score":128,"percentile":314},"2026-01-09",{"date":364,"score":128,"percentile":314},"2026-01-10",{"date":366,"score":128,"percentile":314},"2026-01-11",{"date":368,"score":128,"percentile":314},"2026-01-12",{"date":370,"score":128,"percentile":351},"2026-01-13",{"date":372,"score":128,"percentile":332},"2026-01-14",{"date":374,"score":128,"percentile":332},"2026-01-15",{"date":376,"score":128,"percentile":377},"2026-01-16",0.95392,{"date":379,"score":128,"percentile":380},"2026-01-17",0.95396,{"date":382,"score":128,"percentile":380},"2026-01-18",{"date":384,"score":128,"percentile":324},"2026-01-19",{"date":386,"score":128,"percentile":380},"2026-01-20",{"date":388,"score":128,"percentile":389},"2026-01-21",0.954,{"date":391,"score":128,"percentile":392},"2026-01-22",0.95403,{"date":394,"score":128,"percentile":395},"2026-01-23",0.95407,{"date":397,"score":128,"percentile":398},"2026-01-24",0.9541,{"date":400,"score":128,"percentile":401},"2026-01-25",0.95412,{"date":403,"score":128,"percentile":404},"2026-01-26",0.95414,{"date":406,"score":128,"percentile":404},"2026-01-27",{"date":408,"score":128,"percentile":409},"2026-01-28",0.95416,{"date":411,"score":128,"percentile":329},"2026-01-29",{"date":413,"score":128,"percentile":414},"2026-01-30",0.9542,{"date":416,"score":128,"percentile":417},"2026-01-31",0.95423,{"date":419,"score":128,"percentile":420},"2026-02-01",0.95456,[422],{"source":131,"cvss_v2_0":423,"cvss_v3_0":428,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":424,"baseSeverity":9,"vectorString":425,"impactScore":426,"exploitabilityScore":427},5,"AV:N/AC:L/Au:N/C:N/I:N/A:P",2.9,10,{"baseScore":129,"baseSeverity":429,"vectorString":132,"impactScore":430,"exploitabilityScore":427},"HIGH",6,[432,441,459,466],{"ecosystem":9,"name":433,"vendor":434,"product":435,"cpe_part":436,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":437},"debian linux","debian","debian_linux","o",[438],{"version":439,"is_range":126,"range_type":440,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"8.0","cpe",{"ecosystem":9,"name":442,"vendor":443,"product":442,"cpe_part":444,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":445},"firefox","mozilla","a",[446,451,454],{"version":447,"is_range":448,"range_type":440,"version_start":9,"version_start_type":9,"version_end":449,"version_end_type":450,"fixed_in":9},"lt45.5.0",true,"45.5.0","excluding",{"version":452,"is_range":448,"range_type":440,"version_start":9,"version_start_type":9,"version_end":453,"version_end_type":450,"fixed_in":9},"lt50.0","50.0",{"version":455,"is_range":448,"range_type":137,"version_start":456,"version_start_type":457,"version_end":458,"version_end_type":450,"fixed_in":9},">= unspecified, \u003C 50","unspecified","including","50",{"ecosystem":9,"name":460,"vendor":443,"product":461,"cpe_part":444,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":462},"firefox esr","firefox_esr",[463],{"version":464,"is_range":448,"range_type":137,"version_start":456,"version_start_type":457,"version_end":465,"version_end_type":450,"fixed_in":9},">= unspecified, \u003C 45.5","45.5",{"ecosystem":9,"name":467,"vendor":443,"product":468,"cpe_part":444,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":469},"Thunderbird","thunderbird",[470,471],{"version":447,"is_range":448,"range_type":440,"version_start":9,"version_start_type":9,"version_end":449,"version_end_type":450,"fixed_in":9},{"version":464,"is_range":448,"range_type":137,"version_start":456,"version_start_type":457,"version_end":465,"version_end_type":450,"fixed_in":9}]