Sandbox Escape Vulnerability in Firefox by Mozilla
CVE-2026-0881

10CRITICAL

Key Information:

Vendor

Mozilla

Vendor
CVE Published:
13 January 2026

What is CVE-2026-0881?

A vulnerability in the Messaging System component of Firefox allows an attacker to escape the application sandbox, potentially leading to unauthorized access to sensitive system resources. This flaw impacts all versions of Firefox prior to 147, highlighting the importance of timely updates to avoid exploitation. Users are urged to upgrade their browsers to ensure protection against this type of security threat.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Firefox < 147

Thunderbird < 147

References

CVSS V3.1

Score:
10
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Andrew McCreight
.