PatchSiren cyber security CVE debrief
CVE-2026-12329 Mozilla CVE debrief
A memory safety bug was fixed in Firefox ESR 140.12. This vulnerability was fixed in Firefox ESR 140.12. The bug was reported via [ref-4](resourceLinkAnnotations.ref-4) and [ref-5](resourceLinkAnnotations.ref-5).
- Vendor
- Mozilla
- Product
- Firefox
- CVSS
- MEDIUM 5.3
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-06-16
- Original CVE updated
- 2026-06-16
- Advisory published
- 2026-06-16
- Advisory updated
- 2026-06-16
Who should care
Users of Firefox ESR 140.12
Technical summary
Memory safety bug fixed in Firefox ESR 140.12
Defensive priority
Medium
Recommended defensive actions
- Update to Firefox ESR 140.12 or later
Evidence notes
The CVE was published on 2026-06-16T13:16:33.657Z and last modified on 2026-06-16T13:16:33.657Z. The vendor is likely Mozilla, based on [evidence-0].
Official resources
The CVE was published on 2026-06-16T13:16:33.657Z and last modified on 2026-06-16T13:16:33.657Z.