Sandbox Escape Vulnerability in Firefox Navigation Component
CVE-2026-12295

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
16 June 2026

What is CVE-2026-12295?

A sandbox escape vulnerability exists in the navigation component of Firefox, which could potentially allow attackers to circumvent security restrictions and execute unauthorized scripts. This type of vulnerability may compromise user data and system integrity. Mozilla has addressed this issue in specific updates, notably in Firefox versions 152, ESR 140.12, and ESR 115.37, ensuring enhanced security for users.

Affected Version(s)

Firefox 115.37

Firefox 140.12

Firefox 152

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Yaqoub Aldurayhim
.