CVE-2026-16380

Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*

History

24 Jul 2026, 16:39

Type Values Removed Values Added
References () https://bugzilla.mozilla.org/show_bug.cgi?id=2040386 - () https://bugzilla.mozilla.org/show_bug.cgi?id=2040386 - Permissions Required
References () https://www.mozilla.org/security/advisories/mfsa2026-68/ - () https://www.mozilla.org/security/advisories/mfsa2026-68/ - Vendor Advisory
References () https://www.mozilla.org/security/advisories/mfsa2026-71/ - () https://www.mozilla.org/security/advisories/mfsa2026-71/ - Vendor Advisory
First Time Mozilla
Mozilla thunderbird
Mozilla firefox
CPE cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*

22 Jul 2026, 20:16

Type Values Removed Values Added
Summary (en) Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153. (en) Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
References
  • () https://www.mozilla.org/security/advisories/mfsa2026-71/ -

22 Jul 2026, 18:16

Type Values Removed Values Added
CWE CWE-693
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1

21 Jul 2026, 13:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-21 13:17

Updated : 2026-07-24 16:39


NVD link : CVE-2026-16380

Mitre link : CVE-2026-16380

CVE.ORG link : CVE-2026-16380


JSON object : View

Products Affected

mozilla

  • firefox
  • thunderbird
CWE
CWE-693

Protection Mechanism Failure