MEDIUMVulnerability
Global

Researchers Show a Single Malicious Webpage Visit Can Compromise Tor Browser

·Source: The Hacker News

Updated:

Executive Summary

Nebula Security says a patched Firefox JIT flaw could be triggered by simply visiting a malicious webpage and was also used to compromise Tor Browser. Tracked as CVE-2026-10702, the bug provides arbitrary code execution inside the browser's renderer process. Mozilla rated it High and fixed it in the Firefox 151.0.3 update. "No settings or additional user interaction are required," Eten Zou,

Analysis

Nebula Security says a patched Firefox JIT flaw could be triggered by simply visiting a malicious webpage and was also used to compromise Tor Browser. Tracked as CVE-2026-10702, the bug provides arbitrary code execution inside the browser's renderer process. Mozilla rated it High and fixed it in the Firefox 151.0.3 update. "No settings or additional user interaction are required," Eten Zou,

Indicators of Compromise (1)

CVE (1)
CVE-2026-10702
Source Attribution

Originally published by The Hacker News on Jul 29, 2026.

Related Threats