← לוח פגיעויות

CVE-2026-16367

קריטית 10.0

תיאור (מקור, אנגלית)

Sandbox escape due to invalid pointer in the Disability Access APIs component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.

מדדים

CVSS 3.1
10.0 (CRITICAL) מקור הציון: CNA CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS — סבירות ניצול
0% (אחוזון 000) נכון ל-1/8/2026
CWE
CWE-119, CWE-416, CWE-787

מוצרים מושפעים

mozilla: firefox; mozilla: thunderbird

קישורים