Security Advisory

CVE-2026-16352

9.8
CRITICAL

Vulnerability Description

Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
Published Date July 21, 2026
Official Source NIST NVD Advisory