Information Disclosure and Sandbox Escape in Firefox by Mozilla
CVE-2026-12311

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
16 June 2026

What is CVE-2026-12311?

This vulnerability in the Security: Process Sandboxing component of Firefox allows attackers to bypass sandbox protections, potentially leading to unauthorized access to sensitive information. The issue has been resolved in Firefox version 152 and Firefox ESR version 140.12, enhancing the security and integrity of user data.

Affected Version(s)

Firefox 140.12

Firefox 152

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Yaqoub Aldurayhim
.