CVE-2026-15718 – Mozilla Firefox

CVSS 4.3 MODERATE Zero Day – Immediate Deployment

“Public exploit code shortens the time between discovery and attack.”

Mozilla has released Firefox 152.0.6 to address two security vulnerabilities. CVE-2026-15718 has a CVSS score of 4.3, which is Medium severity. Public proof-of-concept exploit code is available for this vulnerability, although there are no verified reports of attacks in the wild. CVE-2026-15719 has a CVSS score of 5.4, which is Medium severity.

Both vulnerabilities are resolved in Firefox 152.0.6. Organizations should update affected Firefox installations to reduce the risk of exploitation and maintain a secure browsing environment.

Key Details

Affected Product
Mozilla Firefox
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
CWE Classification
CWE-763
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.