CVE-2026-16379
- EPSS 0.28%
- Veröffentlicht 21.07.2026 12:37:53
- Zuletzt bearbeitet 24.07.2026 21:16:44
Privilege escalation in the DOM: Content Processes component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16377
- EPSS 0.39%
- Veröffentlicht 21.07.2026 12:37:52
- Zuletzt bearbeitet 24.07.2026 15:19:21
Mitigation bypass in the PDF Viewer component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16375
- EPSS 0.21%
- Veröffentlicht 21.07.2026 12:37:50
- Zuletzt bearbeitet 24.07.2026 15:15:12
Site isolation issue in the Networking: HTTP component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16374
- EPSS 0.32%
- Veröffentlicht 21.07.2026 12:37:49
- Zuletzt bearbeitet 24.07.2026 15:19:25
Information disclosure in the Framework component in DevTools. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16371
- EPSS 0.28%
- Veröffentlicht 21.07.2026 12:37:47
- Zuletzt bearbeitet 01.09.2026 22:17:10
Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, Thunderbird 140.13, Firefox ESR 140.15, and Thunderbird 140.15.
CVE-2026-16357
- EPSS 0.41%
- Veröffentlicht 21.07.2026 12:37:45
- Zuletzt bearbeitet 24.07.2026 15:28:40
Incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16356
- EPSS 0.39%
- Veröffentlicht 21.07.2026 12:37:44
- Zuletzt bearbeitet 24.07.2026 15:28:09
Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16355
- EPSS 0.41%
- Veröffentlicht 21.07.2026 12:37:43
- Zuletzt bearbeitet 24.07.2026 15:27:33
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16369
- EPSS 0.44%
- Veröffentlicht 21.07.2026 12:37:42
- Zuletzt bearbeitet 24.07.2026 15:19:30
Integer overflow in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16368
- EPSS 0.39%
- Veröffentlicht 21.07.2026 12:37:41
- Zuletzt bearbeitet 24.07.2026 15:09:35
Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.