SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-84140

CRITICAL · CVSS 9.8 EPSS 0.18%

Source: NVD + CISA KEV + EPSS · Published 2026-09-01 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

A site isolation vulnerability in the DOM navigation component of Firefox could allow attackers to exploit cross-origin data leakage, potentially compromising user privacy and security. Users of affected Firefox versions should prioritize updating to Firefox 155 or Firefox ESR 153.2 to mitigate the risk associated with this issue.

CVE
CVE-2026-84140
Severity
CRITICAL
CVSS
9.8
EPSS
0.18%
Firefox

Original NVD Description

Site isolation issue in the DOM: Navigation component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2.

Related CVEs

Other vulnerabilities affecting the same vendor(s)