Use-after-free Vulnerability in Firefox Browser and ESR Version
CVE-2026-84125

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
1 September 2026

What is CVE-2026-84125?

A use-after-free vulnerability exists in the DOM components of the Firefox web browser, as well as the Extended Support Release (ESR) version. This flaw can lead to potential exploitation of memory Corruption, which attackers could leverage to execute arbitrary code. Mozilla has identified and fixed this issue in Firefox version 155 and Firefox ESR version 153.2, ensuring enhanced security for users.

Affected Version(s)

Firefox 153.2

Firefox 155

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Yaqoub Aldurayhim
.