Privilege Escalation in Mozilla Firefox and Firefox ESR
CVE-2026-92073

8.8HIGH

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-92073?

A privilege escalation vulnerability has been identified in the Enterprise Policies component of Mozilla Firefox. This flaw allows an attacker to gain elevated privileges, potentially leading to unauthorized access or control over sensitive operations within the browser. The issue has been addressed in Mozilla Firefox version 156 and Firefox ESR version 153.3, underscoring the importance of maintaining up-to-date software to safeguard against such vulnerabilities.

Affected Version(s)

Firefox 153.3

Firefox 156

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Tyler Maclachlan
.