Sandbox Escape Vulnerability in Firefox Graphics Component
CVE-2026-100786

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
29 September 2026

What is CVE-2026-100786?

A vulnerability has been identified in the Graphics component of Firefox that allows for a sandbox escape due to a use-after-free condition. This security issue can potentially be exploited, permitting an attacker to execute unintended commands or access restricted data. The flaw has been addressed in specific updated versions of Firefox, enhancing the overall security posture of the affected products.

Affected Version(s)

Firefox 115.42

Firefox 140.17

Firefox 153.4

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Mozilla
.