๐จ CVE-2026-16393
Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
bugzilla.mozilla.org
Access Denied
You are not authorized to access bug 2045410. To see this bug, you must
first log in to an account with the appropriate permissions.
first log in to an account with the appropriate permissions.
๐จ CVE-2026-16394
Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
bugzilla.mozilla.org
Access Denied
You are not authorized to access bug 2046748. To see this bug, you must
first log in to an account with the appropriate permissions.
first log in to an account with the appropriate permissions.
๐จ CVE-2026-16395
Integer overflow in the Audio/Video component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
Integer overflow in the Audio/Video component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
bugzilla.mozilla.org
Access Denied
You are not authorized to access bug 2047221. To see this bug, you must
first log in to an account with the appropriate permissions.
first log in to an account with the appropriate permissions.
๐จ CVE-2026-16397
Clickjacking issue in the WebExtensions component in Firefox for Android. This vulnerability was fixed in Firefox 153.
๐@cveNotify
Clickjacking issue in the WebExtensions component in Firefox for Android. This vulnerability was fixed in Firefox 153.
๐@cveNotify
bugzilla.mozilla.org
Access Denied
You are not authorized to access bug 2047608. To see this bug, you must
first log in to an account with the appropriate permissions.
first log in to an account with the appropriate permissions.
๐จ CVE-2026-16398
Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
bugzilla.mozilla.org
Access Denied
You are not authorized to access bug 2048345. To see this bug, you must
first log in to an account with the appropriate permissions.
first log in to an account with the appropriate permissions.
๐จ CVE-2026-16399
Site isolation issue in the DOM: Navigation component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
Site isolation issue in the DOM: Navigation component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
bugzilla.mozilla.org
Access Denied
You are not authorized to access bug 2049981. To see this bug, you must
first log in to an account with the appropriate permissions.
first log in to an account with the appropriate permissions.
๐จ CVE-2026-16400
Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
bugzilla.mozilla.org
Access Denied
You are not authorized to access bug 2050430. To see this bug, you must
first log in to an account with the appropriate permissions.
first log in to an account with the appropriate permissions.
๐จ CVE-2026-16401
Privilege escalation in the Data Loss Prevention component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
Privilege escalation in the Data Loss Prevention component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
bugzilla.mozilla.org
Access Denied
You are not authorized to access bug 2052565. To see this bug, you must
first log in to an account with the appropriate permissions.
first log in to an account with the appropriate permissions.
๐จ CVE-2026-16402
Integer overflow in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
Integer overflow in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
bugzilla.mozilla.org
Access Denied
You are not authorized to access bug 2052703. To see this bug, you must
first log in to an account with the appropriate permissions.
first log in to an account with the appropriate permissions.
๐จ CVE-2026-16403
Spoofing issue in the Address Bar component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
Spoofing issue in the Address Bar component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
bugzilla.mozilla.org
Access Denied
You are not authorized to access bug 1972244. To see this bug, you must
first log in to an account with the appropriate permissions.
first log in to an account with the appropriate permissions.
๐จ CVE-2026-16404
Spoofing issue in Firefox for Android. This vulnerability was fixed in Firefox 153.
๐@cveNotify
Spoofing issue in Firefox for Android. This vulnerability was fixed in Firefox 153.
๐@cveNotify
bugzilla.mozilla.org
Access Denied
You are not authorized to access bug 2020253. To see this bug, you must
first log in to an account with the appropriate permissions.
first log in to an account with the appropriate permissions.
๐จ CVE-2026-16405
Information disclosure in the Networking: WebSockets component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13.
๐@cveNotify
Information disclosure in the Networking: WebSockets component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13.
๐@cveNotify
bugzilla.mozilla.org
Access Denied
You are not authorized to access bug 2036591. To see this bug, you must
first log in to an account with the appropriate permissions.
first log in to an account with the appropriate permissions.
๐จ CVE-2026-16406
Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
bugzilla.mozilla.org
Access Denied
You are not authorized to access bug 2040382. To see this bug, you must
first log in to an account with the appropriate permissions.
first log in to an account with the appropriate permissions.
๐จ CVE-2026-16408
Integer overflow in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
Integer overflow in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 153.
๐@cveNotify
bugzilla.mozilla.org
Access Denied
You are not authorized to access bug 2050477. To see this bug, you must
first log in to an account with the appropriate permissions.
first log in to an account with the appropriate permissions.
๐จ CVE-2026-16411
Memory safety bugs present in Firefox 152. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 153.
๐@cveNotify
Memory safety bugs present in Firefox 152. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 153.
๐@cveNotify
๐จ CVE-2026-50755
An issue in DayuanJiang next-ai-draw-io 0.4.13 allows a remote attacker to obtain sensitive information via the X-Forwarded-For header value
๐@cveNotify
An issue in DayuanJiang next-ai-draw-io 0.4.13 allows a remote attacker to obtain sensitive information via the X-Forwarded-For header value
๐@cveNotify
GitHub
Yu/CVE-2026-50755.md at main ยท August829/Yu
Contribute to August829/Yu development by creating an account on GitHub.
๐จ CVE-2026-50756
An issue in DayuanJiang next-ai-draw-io 0.4.13 allows a remote attacker to obtain sensitive information via the x-ai-provider component
๐@cveNotify
An issue in DayuanJiang next-ai-draw-io 0.4.13 allows a remote attacker to obtain sensitive information via the x-ai-provider component
๐@cveNotify
GitHub
Yu/CVE-2026-50756.md at main ยท August829/Yu
Contribute to August829/Yu development by creating an account on GitHub.
๐จ CVE-2026-50757
Directory Traversal vulnerability in DayuanJiang next-ai-draw-io 0.4.13 allowsa remote attacker to execute arbitrary code via the nex-ai-draw-io/mcp-server
๐@cveNotify
Directory Traversal vulnerability in DayuanJiang next-ai-draw-io 0.4.13 allowsa remote attacker to execute arbitrary code via the nex-ai-draw-io/mcp-server
๐@cveNotify
GitHub
Yu/CVE-2026-50757.md at main ยท August829/Yu
Contribute to August829/Yu development by creating an account on GitHub.
๐จ CVE-2026-50758
Cross Site Scripting vulnerability in DayuanJiang next-ai-draw-io 0.4.13 allows a remote attacker to execute arbitrary code via the mcp parameter
๐@cveNotify
Cross Site Scripting vulnerability in DayuanJiang next-ai-draw-io 0.4.13 allows a remote attacker to execute arbitrary code via the mcp parameter
๐@cveNotify
GitHub
58ead8e7e02026011 ยท Issue #17 ยท August829/CVEP
CVE Report: Reflected XSS via Session ID Injection in next-ai-draw-io MCP Server 1. Vulnerability Information Field Value Product @next-ai-drawio/mcp-server (part of next-ai-draw-io) Vendor DayuanJ...
๐จ CVE-2026-50759
An issue in exo-explore exo 1.0.69 allows a remote attacker to escalate privileges via the GET /state and DELETE /instance/{instance_id} endpoints with no authentication.
๐@cveNotify
An issue in exo-explore exo 1.0.69 allows a remote attacker to escalate privileges via the GET /state and DELETE /instance/{instance_id} endpoints with no authentication.
๐@cveNotify
GitHub
Yu/CVE-2026-50759.md at main ยท August829/Yu
Contribute to August829/Yu development by creating an account on GitHub.
๐จ CVE-2026-30631
An issue was discovered in bytebot-ai in commit 3d37894ce07ef8d8b40adc7fd309ad96c2a71313 (2025-09-11) allowing attackers to execute arbitrary code via crafted path to `computer_write_file`.
๐@cveNotify
An issue was discovered in bytebot-ai in commit 3d37894ce07ef8d8b40adc7fd309ad96c2a71313 (2025-09-11) allowing attackers to execute arbitrary code via crafted path to `computer_write_file`.
๐@cveNotify
Gist
bytebot RCE description
bytebot RCE description. GitHub Gist: instantly share code, notes, and snippets.