CVE-2026-16412
- EPSS 0.33%
- Veröffentlicht 21.07.2026 12:38:23
- Zuletzt bearbeitet 24.07.2026 05:16:40
Memory safety bugs present in Firefox ESR 140.12 and Firefox 152. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fix...
CVE-2026-16405
- EPSS 0.26%
- Veröffentlicht 21.07.2026 12:38:17
- Zuletzt bearbeitet 22.07.2026 20:16:59
Information disclosure in the Networking: WebSockets component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16396
- EPSS 0.24%
- Veröffentlicht 21.07.2026 12:38:09
- Zuletzt bearbeitet 24.07.2026 21:16:44
Privilege escalation in WebExtensions. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16359
- EPSS 0.26%
- Veröffentlicht 21.07.2026 12:38:07
- Zuletzt bearbeitet 24.07.2026 15:32:32
Incorrect boundary conditions in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16390
- EPSS 0.32%
- Veröffentlicht 21.07.2026 12:38:04
- Zuletzt bearbeitet 24.07.2026 15:18:50
Mitigation bypass in the Enterprise Policies component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16391
- EPSS 0.32%
- Veröffentlicht 21.07.2026 12:38:04
- Zuletzt bearbeitet 24.07.2026 15:18:29
Information disclosure in the Storage: IndexedDB component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16387
- EPSS 0.2%
- Veröffentlicht 21.07.2026 12:38:01
- Zuletzt bearbeitet 24.07.2026 15:19:03
Site isolation issue in the Networking component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16383
- EPSS 0.39%
- Veröffentlicht 21.07.2026 12:37:58
- Zuletzt bearbeitet 24.07.2026 15:19:09
Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16381
- EPSS 0.17%
- Veröffentlicht 21.07.2026 12:37:56
- Zuletzt bearbeitet 24.07.2026 15:19:11
Same-origin policy bypass in the Networking: DNS component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16358
- EPSS 0.22%
- Veröffentlicht 21.07.2026 12:37:54
- Zuletzt bearbeitet 24.07.2026 15:29:32
Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.