AI description
Automated description summarized from trusted sources.
CVE-2026-16406 is identified as a privilege escalation vulnerability affecting Mozilla Firefox, specifically impacting its networking component. This flaw is present in Firefox versions up to and including 152. The vulnerability can be exploited remotely, and its exploitation is considered to be easy.
- Description
- Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
- Source
- security@mozilla.org
- NVD status
- Modified
- Products
- firefox
CVSS 3.1
- Type
- Secondary
- Base score
- 9.1
- Impact score
- 5.2
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
- Severity
- CRITICAL
- 134c704f-9b21-4f2e-91b3-4a467353bcc0
- CWE-693
Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.
- Hype score
16
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:mozilla:firefox:*:*:*:*:-:*:*:*",
"matchCriteriaId": "5DB4AF59-87C2-4FC4-896D-02879D6F8E6B",
"versionEndExcluding": "153.0.0",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]