Mitigation Bypass Vulnerability in Firefox Security Component
CVE-2026-12302

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
16 June 2026

What is CVE-2026-12302?

A vulnerability exists in the DOM security component of Firefox, allowing a potential bypass of critical security mitigations. This flaw highlights the need for users to update to the patched versions as outlined by Mozilla in its security advisories. The issue has been remedied in Firefox version 152, as well as in designated releases of Firefox Extended Support Release (ESR). Users are urged to ensure their browsers are updated to safeguard against exploitation.

Affected Version(s)

Firefox 115.37

Firefox 140.12

Firefox 152

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

lebr0nli
.