Mitigation Bypass in DOM Security Component of Firefox
CVE-2026-100829

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
29 September 2026

What is CVE-2026-100829?

A vulnerability has been identified in the DOM security component of Firefox, which allows for a bypass of established mitigations. This loophole poses significant risks as it could enable adversaries to exploit weaknesses in the browser's security frameworks. Mozilla has issued patches in Firefox ESR 153.4 and Firefox 157 to address this issue. Users are strongly encouraged to update to these versions to maintain a secure browsing environment and protect against potential threats.

Affected Version(s)

Firefox 153.4

Firefox 157

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Rintaro Kawasugi
.