← back
CVE-2016-9899

CVE-2016-9899

28Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 21%
from disclosure to weapon0 days
Published on NVDJun 11
1st PoCJan 13
exploitation probability
21%top 3% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Use-after-free while manipulating DOM events and removing audio elements due to errors in the handling of node adoption. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.