Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.8
CVE-2026-16379: Firefox Privilege Escalation Risk Through Browser Component
CVE-2026-16379
CVE-2026-16379
Summary
A security issue in Firefox's Content Processes component could allow an attacker to gain unauthorized access to a user's system. This vulnerability has been fixed in the latest versions of Firefox and Firefox ESR, so users should update their browser to the latest version to stay protected.
What to do
No fix is available yet. Check with your software vendor for updates.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| mozilla | firefox | All versions |
Original title
Privilege escalation in the DOM: Content Processes component
Original description
Privilege escalation in the DOM: Content Processes component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13.
Vulnerability type
CWE-269
Improper Privilege Management
Published: 21 Jul 2026 · Updated: 23 Jul 2026 · First seen: 21 Jul 2026