CVE-2026-10702

MEDIUM

JIT miscompilation in the JavaScript Engine: JIT component

Title source: cna
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2026-10702. PoCs published by Unclecheng-li, HORKimhab.

AI-analyzed exploit summary This repository contains a functional proof-of-concept exploit for CVE-2026-10702, a JIT vulnerability in Firefox's IonMonkey compiler (IonStack). The exploit leverages type confusion to achieve arbitrary memory read/write primitives, culminating in ARM64 shellcode execution.

Description

JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 151.0.3.

Exploits (2)

github WORKING POC 731 stars
by Unclecheng-li · cpoc
https://github.com/Unclecheng-li/poc-lab/tree/main/CVE-2026-10702 IonStack Firefox JIT

This repository contains a functional proof-of-concept exploit for CVE-2026-10702, a JIT vulnerability in Firefox's IonMonkey compiler (IonStack). The exploit leverages type confusion to achieve arbitrary memory read/write primitives, culminating in ARM64 shellcode execution.

Classification
Working Poc 98%
Attack Type
Rce
Complexity
Complex
Reliability
Racy
Target: Mozilla Firefox 151.0 (IonMonkey JIT engine)
No auth needed
Prerequisites: Firefox 151.0 (vulnerable version) · ARM64 device (explicitly supported in PoC) · User interaction to confirm exploit execution
mistral-large-3 · analyzed Jul 11, 2026 Full analysis →
github WORKING POC
by HORKimhab · htmlpoc
https://github.com/HORKimhab/CVE-2026-10702

This repository contains a functional exploit for CVE-2026-10702, a JavaScript engine vulnerability in Firefox 151.0. The exploit uses JIT optimization flaws to achieve memory corruption, type confusion, and arbitrary read/write primitives, enabling sandbox escape and potential remote code execution.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Complex
Reliability
Racy
Target: Mozilla Firefox 151.0
No auth needed
Prerequisites: Target must be running Firefox 151.0 · User interaction required (confirmation dialogs) · Specific device fingerprinting for stability
mistral-large-3 · analyzed Jul 30, 2026 Full analysis →

Scores

CVSS v3 4.3
EPSS 0.0072
EPSS Percentile 50.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-733 CWE-843
Status published
Products (2)
mozilla/firefox < 151.0.3
Mozilla/Firefox 151.0.3
Published Jun 02, 2026
Tracked Since Jun 03, 2026