AI description
Automated description summarized from trusted sources.
CVE-2026-16400 is an information disclosure vulnerability found in Mozilla Firefox versions up to 152. This flaw specifically impacts an unknown function within the browser's Document Object Model (DOM) component. The vulnerability allows for sensitive information to be exposed to an unauthorized actor through manipulation with an unknown input. It can be exploited remotely and requires user interaction. The issue was addressed and fixed in Firefox version 153.
- Description
- Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
- Source
- security@mozilla.org
- NVD status
- Undergoing Analysis
CVSS 3.1
- Type
- Secondary
- Base score
- 7.5
- Impact score
- 3.6
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Severity
- HIGH
- 134c704f-9b21-4f2e-91b3-4a467353bcc0
- CWE-200
Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.
- Hype score
16