Use-After-Free Vulnerability in Firefox by Mozilla
CVE-2026-100785

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
29 September 2026

What is CVE-2026-100785?

A use-after-free vulnerability exists in the DOM within the Core & HTML components of Firefox, which could potentially allow an attacker to exploit the memory management flaw. This issue has been addressed in several Firefox and Firefox ESR versions, ensuring users are not exposed to related security risks. It is critical for users to update to the latest versions to safeguard against potential exploitation.

Affected Version(s)

Firefox 115.42

Firefox 140.17

Firefox 153.4

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Mozilla
.