SEPTEMBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-16390

CRITICAL · CVSS 9.1 EPSS 0.32%

Source: NVD + CISA KEV + EPSS · Published 2026-07-21 · Last synced 2026-08-20

CyberRota Analysis

AI-Generated

A critical vulnerability in the Enterprise Policies component of Firefox allows for a bypass of mitigation measures, potentially exposing users to security risks. This issue affects Firefox and Thunderbird versions prior to the specified updates, making it essential for organizations using these applications to prioritize immediate upgrades to the latest versions to safeguard against potential exploitation.

CVE
CVE-2026-16390
Severity
CRITICAL
CVSS
9.1
EPSS
0.32%
Firefox

Original NVD Description

Mitigation bypass in the Enterprise Policies component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.

Related CVEs

Other vulnerabilities affecting the same vendor(s)