What is CVE-2026-15718?
We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing this flaw. This vulnerability was fixed in Firefox 152.0.6, Firefox ESR 140.13, and Thunderbird 140.13.
Timeline
- 2026-07-14Published to the U.S. National Vulnerability Database (NVD)
- 2026-07-16First covered in a defend.network daily briefing
- 2026-07-22NVD record last updated
Affected product
Mozilla Firefox
References
Referenced in our briefings & reports
Browse all tracked CVEs in the defend.network CVE database →
🤖 This CVE page is generated by defend.network from NVD, CISA KEV, EPSS, and our verified daily briefings. Severity and exploitation data come from official sources; always verify remediation steps against the official vendor advisory before acting in production.