Privilege Escalation in Firefox and Firefox ESR by Mozilla
CVE-2026-92047

8.8HIGH

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-92047?

A privilege escalation vulnerability exists in the Crash Reporting component of Mozilla's Firefox and Firefox Extended Support Release (ESR). This flaw allows an attacker to potentially gain elevated privileges, thereby compromising the integrity of the affected system. Users are encouraged to update to Firefox version 156 or Firefox ESR version 153.3 to mitigate these risks and strengthen their cybersecurity posture.

Affected Version(s)

Firefox 153.3

Firefox 156

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Mozilla
.