SEPTEMBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-16397

MEDIUM · CVSS 6.5 EPSS 0.17%

Source: NVD + CISA KEV + EPSS · Published 2026-07-21 · Last synced 2026-08-20

CyberRota Analysis

AI-Generated

A clickjacking vulnerability exists in the WebExtensions component of Firefox for Android, potentially allowing attackers to manipulate user interactions with web content. This could lead to unauthorized actions being performed on behalf of users without their consent. Users and organizations utilizing Firefox on Android should prioritize updating to version 153 or later to mitigate this risk.

CVE
CVE-2026-16397
Severity
MEDIUM
CVSS
6.5
EPSS
0.17%
Android Firefox

Original NVD Description

Clickjacking issue in the WebExtensions component in Firefox for Android. This vulnerability was fixed in Firefox 153.

Related CVEs

Other vulnerabilities affecting the same vendor(s)