Use-After-Free Vulnerability in Firefox by Mozilla
CVE-2026-100831

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
29 September 2026

What is CVE-2026-100831?

A use-after-free vulnerability was identified in the DOM handling of UI Events and Focus Management in Firefox. This flaw may enable attackers to exploit freed memory, potentially leading to arbitrary code execution, data corruption, or application crashes. The issue has been addressed in the latest versions of Firefox ESR and standard Firefox builds, ensuring enhanced protection against such memory-related vulnerabilities.

Affected Version(s)

Firefox 153.4

Firefox 157

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Mozilla
.