Researchers Show a Single Malicious Webpage Visit Can Compromise Tor Browser
Summary
Nebula Security says a patched Firefox JIT flaw could be triggered by simply visiting a malicious webpage and was also used to compromise Tor Browser. Tracked as CVE-2026-10702, the bug provides arbitrary code execution inside the browser's renderer process. Mozilla rated it High and fixed it in the Firefox 151.0.3 update. "No settings or additional user interaction are required," Eten Zou,
Lotu Radar provides attributed news summaries and links to the original publisher. Full reporting and copyright remain with the source.