CVE-2026-16406

Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mozilla:firefox:*:*:*:*:-:*:*:*

History

22 Jul 2026, 20:16

Type Values Removed Values Added
Summary (en) Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153. (en) Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
References
  • () https://www.mozilla.org/security/advisories/mfsa2026-71/ -

22 Jul 2026, 18:35

Type Values Removed Values Added
First Time Mozilla
Mozilla firefox
CPE cpe:2.3:a:mozilla:firefox:*:*:*:*:-:*:*:*
References () https://bugzilla.mozilla.org/show_bug.cgi?id=2040382 - () https://bugzilla.mozilla.org/show_bug.cgi?id=2040382 - Permissions Required
References () https://www.mozilla.org/security/advisories/mfsa2026-68/ - () https://www.mozilla.org/security/advisories/mfsa2026-68/ - Vendor Advisory

21 Jul 2026, 20:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
CWE CWE-693

21 Jul 2026, 13:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-21 13:17

Updated : 2026-07-22 20:16


NVD link : CVE-2026-16406

Mitre link : CVE-2026-16406

CVE.ORG link : CVE-2026-16406


JSON object : View

Products Affected

mozilla

  • firefox
CWE
CWE-693

Protection Mechanism Failure