CVE-2026-100809 - Same-origin policy bypass in the DevTools component
CVE ID :CVE-2026-100809
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Same-origin policy bypass in the DevTools component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100809
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Same-origin policy bypass in the DevTools component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100810 - Other issue in the DevTools component
CVE ID :CVE-2026-100810
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Other issue in the DevTools component. This vulnerability was fixed in Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100810
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Other issue in the DevTools component. This vulnerability was fixed in Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100811 - Sandbox escape due to use-after-free in the DOM: Core & HTML component
CVE ID :CVE-2026-100811
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Sandbox escape due to use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, and Firefox ESR 140.17.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100811
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Sandbox escape due to use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, and Firefox ESR 140.17.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100812 - Denial-of-service in the Graphics component
CVE ID :CVE-2026-100812
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Denial-of-service in the Graphics component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100812
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Denial-of-service in the Graphics component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100813 - Invalid pointer in the JavaScript Engine: JIT component
CVE ID :CVE-2026-100813
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Invalid pointer in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100813
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Invalid pointer in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100814 - Incorrect boundary conditions in the JavaScript Engine: JIT component
CVE ID :CVE-2026-100814
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Incorrect boundary conditions in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100814
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Incorrect boundary conditions in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100815 - Use-after-free in the CSS Parsing and Computation component
CVE ID :CVE-2026-100815
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Use-after-free in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100815
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Use-after-free in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100816 - Site isolation issue in the DOM: Networking component
CVE ID :CVE-2026-100816
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Site isolation issue in the DOM: Networking component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100816
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Site isolation issue in the DOM: Networking component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100817 - Other issue in the JavaScript: WebAssembly component
CVE ID :CVE-2026-100817
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Other issue in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100817
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Other issue in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100818 - Sandbox escape due to use-after-free in the Widget: Gtk component
CVE ID :CVE-2026-100818
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Sandbox escape due to use-after-free in the Widget: Gtk component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, and Firefox ESR 140.17.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100818
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Sandbox escape due to use-after-free in the Widget: Gtk component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, and Firefox ESR 140.17.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100819 - Sandbox escape due to incorrect boundary conditions in the XPCOM component
CVE ID :CVE-2026-100819
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Sandbox escape due to incorrect boundary conditions in the XPCOM component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100819
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Sandbox escape due to incorrect boundary conditions in the XPCOM component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100820 - Privilege escalation in the Address Bar component
CVE ID :CVE-2026-100820
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Privilege escalation in the Address Bar component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, and Firefox ESR 140.17.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100820
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Privilege escalation in the Address Bar component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, and Firefox ESR 140.17.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100821 - Site isolation issue in the Panning and Zooming component
CVE ID :CVE-2026-100821
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Site isolation issue in the Panning and Zooming component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100821
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Site isolation issue in the Panning and Zooming component. This vulnerability was fixed in Firefox ESR 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100822 - Spoofing issue in the Networking: HTTP component
CVE ID :CVE-2026-100822
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Spoofing issue in the Networking: HTTP component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100822
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Spoofing issue in the Networking: HTTP component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100823 - Spoofing issue in the Downloads component in Firefox for Android
CVE ID :CVE-2026-100823
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Spoofing issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100823
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Spoofing issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100824 - Privilege escalation in the Places component
CVE ID :CVE-2026-100824
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Privilege escalation in the Places component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100824
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Privilege escalation in the Places component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100825 - Use-after-free in the JavaScript Engine: JIT component
CVE ID :CVE-2026-100825
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Use-after-free in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100825
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Use-after-free in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100826 - Denial-of-service in the Storage: StorageManager component
CVE ID :CVE-2026-100826
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Denial-of-service in the Storage: StorageManager component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100826
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Denial-of-service in the Storage: StorageManager component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100828 - Mitigation bypass in the Bookmarks & History component
CVE ID :CVE-2026-100828
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Mitigation bypass in the Bookmarks & History component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100828
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Mitigation bypass in the Bookmarks & History component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100829 - Mitigation bypass in the DOM: Security component
CVE ID :CVE-2026-100829
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100829
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-100830 - Mitigation bypass in the DOM: Navigation component
CVE ID :CVE-2026-100830
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Mitigation bypass in the DOM: Navigation component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE ID :CVE-2026-100830
Published : Sept. 29, 2026, 12:36 p.m. | 50 minutes ago
Description :Mitigation bypass in the DOM: Navigation component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...