CVE Vulnerability Database

Search and browse 389,869 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-16388CRITICAL9.8Sandbox escape in the DOM: Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
CVE-2026-16387CRITICAL9.8Site isolation issue in the Networking component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thund...
CVE-2026-16386HIGH7.5Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerability was fixed in Fi...
CVE-2026-16385HIGH7.5Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerability was fixed in Fi...
CVE-2026-16384HIGH7.5Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerability was fixed in Fi...
CVE-2026-16383CRITICAL9.8Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thu...
CVE-2026-16382CRITICAL9.8Mitigation bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 153 and Thunderbird 153...
CVE-2026-16381CRITICAL9.1Same-origin policy bypass in the Networking: DNS component. This vulnerability was fixed in Firefox 153, Firefox ESR 140...
CVE-2026-16380CRITICAL9.1Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
CVE-2026-16379HIGH8.8Privilege escalation in the DOM: Content Processes component. This vulnerability was fixed in Firefox 153, Firefox ESR 1...
CVE-2026-16378HIGH7.5Other issue in the DOM: Copy & Paste and Drag & Drop component. This vulnerability was fixed in Firefox 153 and Thunderb...
CVE-2026-16377CRITICAL9.8Mitigation bypass in the PDF Viewer component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderb...
CVE-2026-16376HIGH7.5Denial-of-service in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
CVE-2026-16375CRITICAL9.8Site isolation issue in the Networking: HTTP component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13,...
CVE-2026-16374HIGH7.5Information disclosure in the Framework component in DevTools. This vulnerability was fixed in Firefox 153, Firefox ESR ...
CVE-2026-16373HIGH7.5Information disclosure in the Privacy component in Firefox for Android. This vulnerability was fixed in Firefox 153.
CVE-2026-16372HIGH8.8Privilege escalation in the DOM: Content Processes component. This vulnerability was fixed in Firefox 153 and Thunderbir...
CVE-2026-16371HIGH8.8Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, ...
CVE-2026-16370CRITICAL9.1Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
CVE-2026-16369CRITICAL9.8Integer overflow in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153, Firefox ESR 140....
CVE-2026-16368CRITICAL9.8Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153, Fir...
CVE-2026-16367CRITICAL10Sandbox escape due to invalid pointer in the Disability Access APIs component. This vulnerability was fixed in Firefox 1...
CVE-2026-16366HIGH8.8Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
CVE-2026-16365HIGH8.8Privilege escalation in the DOM: Workers component. This vulnerability was fixed in Firefox 153, Thunderbird 153, Firefo...
CVE-2026-16364CRITICAL9.1Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 153 and Th...