CVE-2026-18809: Information disclosure in Firefox for Android and Firefox Focus for Android. This vulnerability was fixed in Firefox 153.0.3.
Information disclosure in Firefox for Android and Firefox Focus for Android. This vulnerability was fixed in Firefox 153.0.3.
Details
Original advisory: https://nvd.nist.gov/vuln/detail/CVE-2026-18809
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-18809 | coverage & exploitation status | NVD · CVE.org |
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
Recent advisories for Information disclosure in
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- medium[NEW] [medium] Golang Go: Multiple vulnerabilities allow information disclosurecert-bund · 2026-08-05
- medium[UPDATE] [medium] Podman: Vulnerability allows information disclosurecert-bund · 2026-08-05
- medium[UPDATE] [medium] Red Hat JBoss Enterprise Application Platform (bouncycastle): Vulnerability allows informati…cert-bund · 2026-08-05
- medium[UPDATE] [medium] Perl: Vulnerability allows code execution and information disclosurecert-bund · 2026-08-05
- unknownMozilla Firefox Information Disclosure Vulnerabilityhkcert · 2026-08-05
- highGHSA-fr6g-7cq8-fg82: Flowise: Information Disclosure in GET /api/v1/upsert-history returns the entire server-w…ghsa · 2026-08-04
More from NVD Recent CVEs
- unknownCVE-2026-70474: Flowise is a drag-and-drop user interface for building customized large language model (LLM) f…2026-08-04
- unknownCVE-2026-70473: Flowise is a drag-and-drop user interface for building customized large language model (LLM) f…2026-08-04
- unknownCVE-2026-70472: Flowise is a drag & drop user interface to build a customized large language model flow. Prior…2026-08-04
- unknownCVE-2026-70471: Flowise is a drag-and-drop user interface for building customized large language model (LLM) f…2026-08-04
- mediumCVE-2026-69704: Atals-Livre contains a SQL injection vulnerability that allows attackers to manipulate databas…2026-08-04