Skip to content
archivevulnerability · 29 Jul 2026 · 11:57 UTC

Researchers Show a Single Malicious Webpage Visit Can Compromise Tor Browser

VULNCVE-2026-10702source · THN

last 60 dispatches · spectrum

Nebula Security says a patched Firefox JIT flaw could be triggered by simply visiting a malicious webpage and was also used to compromise Tor Browser. Tracked as CVE-2026-10702, the bug provides arbitrary code execution inside the browser's renderer process. Mozilla rated it High and fixed it in the Firefox 151.0.3 update. …

CVE · detail
grounded ✓primary source ↗
Early access

Get the next one first.

Early access opens the actor API and MCP server first, plus alerts when an adversary you follow lands on the wire. One email when it's ready. Nothing else, ever.

bot-protected