PT-2026-58014 · Mozilla+1 · Firefox+1

·

CVE-2026-15718

·

Published

2026-07-14

·

Updated

2026-08-26

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Mozilla Firefox versions prior to 152.0.6
Description Issues exist within the DOM Navigation and JavaScript WebAssembly components. The DOM Navigation flaw involves improper access control, while the WebAssembly issue is caused by a use-after-free condition involving an incorrect pointer. A remote attacker could exploit these flaws to impact the confidentiality and integrity of protected information or disclose sensitive data.
Recommendations Update to version 152.0.6.

Fix

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:47101
ALSA-2026:47104
ALSA-2026:47105
ALSA-2026:49621
ALSA-2026:49921
ALSA-2026:49922
BDU:2026-10081
BDU:2026-10082
CVE-2026-15718
OESA-2026-3195
OESA-2026-3196
OESA-2026-3225
OESA-2026-3226
OESA-2026-3227
OESA-2026-3228
OPENSUSE-SU-2026:11311-1
OPENSUSE-SU-2026:11329-1
OPENSUSE-SU-2026:11359-1
OPENSUSE-SU-2026:21519-1
RHSA-2026:47101
RHSA-2026:47104
RHSA-2026:47105
RHSA-2026:54180
RHSA-2026:54181
RHSA-2026:54182
RHSA-2026:54185
RHSA-2026:54248
RHSA-2026:54249
RHSA-2026:54259
RHSA-2026:54339
SUSE-SU-2026:23115-1
SUSE-SU-2026:23137-1
SUSE-SU-2026:3200-1
SUSE-SU-2026:3221-1
SUSE-SU-2026:3546-1

Affected Products

Firefox
Rocky Linux