Denial-of-Service Vulnerability in Firefox and Firefox ESR
CVE-2026-92077

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-92077?

A denial-of-service vulnerability exists in the SVG component of Firefox, which could cause the browser to become unresponsive. This affects users of both the standard Firefox browser and its Extended Support Release (ESR). The issue has been addressed in Firefox version 156 and Firefox ESR version 153.3, with the fix available to enhance user security and maintain system stability. For details on this vulnerability and its resolution, please refer to the official Mozilla security advisories.

Affected Version(s)

Firefox 153.3

Firefox 156

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

sak
.