CVE-2026-16404

Published: Lug 21, 2026 Last Modified: Lug 24, 2026
ExploitDB:
Other exploit source:
Google Dorks:
HIGH 7,4
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0
Attack Vector: network
Attack Complexity: low
Privileges Required: none
User Interaction: required
Scope: changed
Confidentiality: none
Integrity: high
Availability: none

Description

AI Translation Available

Spoofing issue in Firefox for Android. This vulnerability was fixed in Firefox 153.

290

Authentication Bypass by Spoofing

Incomplete
Common Consequences
Security Scopes Affected:
Access Control
Potential Impacts:
Bypass Protection Mechanism Gain Privileges Or Assume Identity
Applicable Platforms
All platforms may be affected
View CWE Details
Application

Firefox Mobile by Mozilla

Version Range Affected
To 153.0 (exclusive)
cpe:2.3:a:mozilla:firefox_mobile:*:*:*:*:*:android:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://bugzilla.mozilla.org/show_bug.cgi?id=2020253
https://www.mozilla.org/security/advisories/mfsa2026-68/