Mitigation Bypass in Firefox by Mozilla Corporation
CVE-2026-100808

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
29 September 2026

What is CVE-2026-100808?

A significant vulnerability in the Firefox browser's DOM: Service Workers component has been identified, allowing potential bypass of existing mitigations. This security flaw can lead to unintended access or interactions with service workers, potentially compromising user data or system integrity. The issue has been addressed in Firefox ESR version 153.4 and Firefox version 157, ensuring enhanced protection against malicious exploitation. Users are encouraged to update to these versions to mitigate risks associated with this vulnerability.

Affected Version(s)

Firefox 153.4

Firefox 157

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

WinD39
.