SEPTEMBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-16411

CRITICAL · CVSS 9.8 EPSS 0.32% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-07-21 · Last synced 2026-08-20

CyberRota Analysis

AI-Generated

Firefox versions prior to 153 contain critical memory safety vulnerabilities that could potentially allow attackers to exploit memory corruption and execute arbitrary code. Organizations using affected versions should prioritize updating to the latest release to mitigate the risk of exploitation. This is particularly crucial for environments where Firefox is used for sensitive operations or data access.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-16411
Severity
CRITICAL
CVSS
9.8
EPSS
0.32%
Firefox

Original NVD Description

Memory safety bugs present in Firefox 152. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 153 and Thunderbird 153.

Related CVEs

Other vulnerabilities affecting the same vendor(s)