Sandbox Escape Vulnerability in Firefox by Mozilla
CVE-2026-92071

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-92071?

This security flaw involves a sandbox escape due to incorrect boundary conditions within the Widget: Win32 component of Firefox. By exploiting this vulnerability, an attacker may gain unauthorized access to the system. This issue has been resolved in Firefox version 156 and Firefox ESR version 153.3, highlighting the importance of keeping your software updated to mitigate potential security risks.

Affected Version(s)

Firefox 153.3

Firefox 156

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Mozilla
.