7.5
CVE-2026-16398
- EPSS 0.15%
- Veröffentlicht 21.07.2026 12:38:11
- Zuletzt bearbeitet 24.07.2026 16:42:35
- CVE-Watchlists
- Unerledigt
Site isolation issue in the Graphics component
Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mozilla ≫ Thunderbird Version < 153.0
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.15% | 0.046 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| CISA-ADP | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
CWE-346 Origin Validation Error
The product does not properly verify that the source of data or communication is valid.
https://www.mozilla.org/security/advisories/mfsa2026-68/
https://bugzilla.mozilla.org/show_bug.cgi?id=2048345
https://www.mozilla.org/security/advisories/mfsa2026-71/