Firefox patches public WebAssembly and JavaScript memory flaws (CVE-2026-15718/15719)
Source headline: Firefox, Chrome, Adobe, and VMware Updates Fix Multiple Critical Security Flaws
Intelligence Summary
Mozilla released updates to fix two critical bugs affecting Firefox. One vulnerability is an invalid pointer in the JavaScript WebAssembly component. The second involves a site isolation issue in the DOM Navigation component. Mozilla noted exploit code was published for at least one of these flaws. Users should update Firefox promptly to reduce the risk of remote compromise.
Recommended Action
Check whether your Firefox deployment is affected by CVE-2026-15718 and apply the vendor fix. Until then, watch authentication and outbound traffic logs for the indicators described in the source. This signal rests on a single report, so corroborate it before acting on anything irreversible.