PT-2026-61879 · Mozilla · Firefox+1

·

CVE-2026-16367

·

Published

2026-07-21

·

Updated

2026-09-09

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Firefox versions prior to 153 Thunderbird versions prior to 153
Description A sandbox escape is possible due to an invalid pointer within the Disability Access APIs component. A sandbox is a security mechanism used to isolate running applications from the rest of the system to prevent malicious code from accessing sensitive data or resources.
Recommendations Update Firefox to version 153. Update Thunderbird to version 153.

Fix

Memory Corruption

Buffer Overflow

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-16367
OPENSUSE-SU-2026:11358-1
OPENSUSE-SU-2026:11373-1
OPENSUSE-SU-2026:21713-1
SUSE-SU-2026:23411-1

Affected Products

Firefox
Thunderbird