CVE-2026-16357

Updated on 21 Jul 2026

Severity

9.8 Critical severity

Details

CVSS score
9.8
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Overview

About vulnerability

Incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.

Details

Affected product:
AlmaLinux 9.2 ESU
Affected packages:
thunderbird @ 115.4.1 (+1 more)

Fixes