CVE-2026-15718

We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing this flaw. This vulnerability was fixed in Firefox 152.0.6, Firefox ESR 140.13, and Thunderbird 140.13.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mozilla:firefox:*:*:*:*:-:*:*:*

History

22 Jul 2026, 20:16

Type Values Removed Values Added
References
  • () https://www.mozilla.org/security/advisories/mfsa2026-72/ -
Summary (en) We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing this flaw. This vulnerability was fixed in Firefox 152.0.6 and Firefox ESR 140.13. (en) We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing this flaw. This vulnerability was fixed in Firefox 152.0.6, Firefox ESR 140.13, and Thunderbird 140.13.

21 Jul 2026, 13:17

Type Values Removed Values Added
References
  • () https://www.mozilla.org/security/advisories/mfsa2026-70/ -
Summary (en) We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing this flaw. This vulnerability was fixed in Firefox 152.0.6. (en) We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing this flaw. This vulnerability was fixed in Firefox 152.0.6 and Firefox ESR 140.13.

14 Jul 2026, 18:36

Type Values Removed Values Added
CPE cpe:2.3:a:mozilla:firefox:*:*:*:*:-:*:*:*
First Time Mozilla
Mozilla firefox
References () https://bugzilla.mozilla.org/show_bug.cgi?id=2045443 - () https://bugzilla.mozilla.org/show_bug.cgi?id=2045443 - Permissions Required
References () https://www.mozilla.org/security/advisories/mfsa2026-67/ - () https://www.mozilla.org/security/advisories/mfsa2026-67/ - Vendor Advisory

14 Jul 2026, 14:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.3
CWE CWE-763

14 Jul 2026, 13:18

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-14 13:18

Updated : 2026-07-22 20:16


NVD link : CVE-2026-15718

Mitre link : CVE-2026-15718

CVE.ORG link : CVE-2026-15718


JSON object : View

Products Affected

mozilla

  • firefox
CWE
CWE-763

Release of Invalid Pointer or Reference