SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-84137

MEDIUM · CVSS 4.3 EPSS 0.13%

Source: NVD + CISA KEV + EPSS · Published 2026-09-01 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A spoofing vulnerability exists in the DOM: Core & HTML component of Firefox, potentially allowing attackers to manipulate content displayed to users. This could lead to misleading information being presented, impacting user trust and data integrity. Organizations using affected versions of Firefox should prioritize updates to versions 155 or ESR 153.2 to mitigate this risk.

CVE
CVE-2026-84137
Severity
MEDIUM
CVSS
4.3
EPSS
0.13%
Firefox

Original NVD Description

Spoofing issue in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2.

Related CVEs

Other vulnerabilities affecting the same vendor(s)