CVE-2026-14241
Critical · CVSS 9.8Mozilla Firefox — Memory corruption out-of-bounds write RCE
- CVSS
- 9.8
- nvd
- EPSS
- 0.30%
- 22th pct
- KEV
- No
- Class
- other
- CWE-787, CWE-119
Description
Memory safety bugs present in Firefox 152.0.3. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 152.0.4.
Search profile — drives PoC discovery
Symbols mfsa2026-62bug_id=2043241bug_id=2045514bug_id=2045576bug_id=2045623bug_id=2045765bug_id=2049409bug_id=2049840bug_id=2046814
Keywords CVE-2026-14241Firefox 152.0.3Firefox 152.0.4memory safety bugsmemory corruptionmfsa2026-62CWE-787CWE-119out-of-bounds writearbitrary code executionMozilla Firefox PoC
Versions: Firefox < 152.0.4 (fixed in 152.0.4)
References
Status: enriched · ingested 2026-07-06T18:00:39.000Z · profiled 2026-07-06T18:30:39.000Z