SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-84125

MEDIUM · CVSS 5.4 EPSS 0.16%

Source: NVD + CISA KEV + EPSS · Published 2026-09-01 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in the DOM Core and HTML components of Firefox could allow an attacker to execute arbitrary code or cause a denial of service. Users of affected Firefox versions should prioritize updating to Firefox 155 or Firefox ESR 153.2 to mitigate potential exploitation risks.

CVE
CVE-2026-84125
Severity
MEDIUM
CVSS
5.4
EPSS
0.16%
Firefox

Original NVD Description

Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2.

Related CVEs

Other vulnerabilities affecting the same vendor(s)