Mozilla Firefox — CVE-2026-14241 (Critical)

Date Jun 30, 2026
Type Vendor advisory
Signal Critical vendor advisory
Vendor / Product Mozilla · Firefox
CVE CVE-2026-14241
Critical vendor advisory CVE-2026-14241

Summary

Memory safety bugs present in Firefox 152.0.3. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 152.0.4.

Why it matters

This CVE carries a CRITICAL severity rating (CVSS 9.8) in Mozilla Firefox. Patch or mitigate promptly. EPSS percentile: 4%.

Operator check

Review CVE-2026-14241 in your asset inventory. Apply patches per vendor guidance and verify Firefox is not exposed. CVSS score: 9.8. EPSS probability: 0.1%; percentile: 4%.

Sources

PatchBrief uses public sources. It does not scan environments, verify exposure, or replace vendor guidance.