Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
51763
Total
4101
Critical
15352
High
15010
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-16381 | UNKNOWN | — | Same-origin policy bypass in the Networking: DNS component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | Jul 21, 2026 |
| CVE-2026-16380 | UNKNOWN | — | Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153. | Jul 21, 2026 |
| CVE-2026-16379 | UNKNOWN | — | Privilege escalation in the DOM: Content Processes component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | Jul 21, 2026 |
| CVE-2026-16378 | UNKNOWN | — | Other issue in the DOM: Copy & Paste and Drag & Drop component. This vulnerability was fixed in Firefox 153. | Jul 21, 2026 |
| CVE-2026-16377 | UNKNOWN | — | Mitigation bypass in the PDF Viewer component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | Jul 21, 2026 |
| CVE-2026-16376 | UNKNOWN | — | Denial-of-service in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 153. | Jul 21, 2026 |
| CVE-2026-16375 | UNKNOWN | — | Site isolation issue in the Networking: HTTP component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | Jul 21, 2026 |
| CVE-2026-16374 | UNKNOWN | — | Information disclosure in the Framework component in DevTools. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | Jul 21, 2026 |
| CVE-2026-16373 | UNKNOWN | — | Information disclosure in the Privacy component in Firefox for Android. This vulnerability was fixed in Firefox 153. | Jul 21, 2026 |
| CVE-2026-16372 | UNKNOWN | — | Privilege escalation in the DOM: Content Processes component. This vulnerability was fixed in Firefox 153. | Jul 21, 2026 |
| CVE-2026-16371 | UNKNOWN | — | Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | Jul 21, 2026 |
| CVE-2026-16370 | UNKNOWN | — | Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 153. | Jul 21, 2026 |
| CVE-2026-16369 | UNKNOWN | — | Integer overflow in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | Jul 21, 2026 |
| CVE-2026-16368 | UNKNOWN | — | Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | Jul 21, 2026 |
| CVE-2026-16367 | UNKNOWN | — | Sandbox escape due to invalid pointer in the Disability Access APIs component. This vulnerability was fixed in Firefox 153. | Jul 21, 2026 |
| CVE-2026-16366 | UNKNOWN | — | Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153. | Jul 21, 2026 |
| CVE-2026-16365 | UNKNOWN | — | Privilege escalation in the DOM: Workers component. This vulnerability was fixed in Firefox 153. | Jul 21, 2026 |
| CVE-2026-16364 | UNKNOWN | — | Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 153. | Jul 21, 2026 |
| CVE-2026-16363 | UNKNOWN | — | JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | Jul 21, 2026 |
| CVE-2026-16362 | UNKNOWN | — | Use-after-free in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | Jul 21, 2026 |
| CVE-2026-16361 | CRITICAL | 9.8 | Memory safety bugs present in Firefox ESR 115.37 and Firefox ESR 140.12. Some of these bugs showed evidence of memory corruption and we presume that … | Jul 21, 2026 |
| CVE-2026-16360 | UNKNOWN | — | Memory safety bugs present in Firefox ESR 115.37, Firefox ESR 140.12 and Firefox 152. Some of these bugs showed evidence of memory corruption and we … | Jul 21, 2026 |
| CVE-2026-16359 | CRITICAL | 9.1 | Incorrect boundary conditions in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, and Firefox ESR 140.13. | Jul 21, 2026 |
| CVE-2026-16358 | UNKNOWN | — | Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, and Firefox ESR 140.13. | Jul 21, 2026 |
| CVE-2026-16357 | UNKNOWN | — | Incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, and Firefox ESR 140.13. | Jul 21, 2026 |