VYPR
Critical severity9.1NVD Advisory· Published Jun 16, 2026· Updated Jun 16, 2026

CVE-2026-12304

CVE-2026-12304

Description

Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

24

Patches

Vulnerability mechanics

References

5

News mentions

1