Back to CVE List

CVE-2026-8953

CRITICAL SEVERITY

CVSS Score & Metrics

Base Score
9.6 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

Vulnerability Description

Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-416
Source
NVD
Vendor
mozilla
Product
firefox

External References

Discussion (0)

Add Comment

No comments yet. Be the first!