Use-After-Free Vulnerability in Firefox Browser by Mozilla
CVE-2026-0884
Key Information:
- Vendor
Mozilla
- Vendor
- CVE Published:
- 13 January 2026
What is CVE-2026-0884?
A use-after-free vulnerability has been identified in the JavaScript Engine component of the Firefox browser. This flaw can potentially allow an attacker to exploit the memory management functionality of the browser, leading to unexpected behavior or system compromise. Users of Firefox versions prior to 147 and Firefox ESR versions below 140.7 are recommended to update their browsers to mitigate such risks. Mozilla encourages all users to ensure they are using the most recent versions to maintain optimum security levels.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Firefox < 147
Firefox ESR < 140.7
Thunderbird < 147
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved