VULNERABILITY INTELLIGENCE

CVE-2016-9072

CVSS score7.5 HIGH
EPSS probability1.33%
CISA KEVNot currently listed
Published2018-06-11
Last modified2026-06-17

Description

When a new Firefox profile is created on 64-bit Windows installations, the sandbox for 64-bit NPAPI plugins is not enabled by default. Note: This issue only affects 64-bit Windows. 32-bit Windows and other operating systems are unaffected. This vulnerability affects Firefox < 50.