OCTOBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-100771

HIGH · CVSS 8.1 EPSS 0.31%

Source: NVD + CISA KEV + EPSS · Published 2026-09-29 · Last synced 2026-10-08

CyberRota Analysis

AI-Generated

A vulnerability exists in the DOM: Streams component of Firefox, leading to potential undefined behavior that could be exploited. Users of affected Firefox versions, particularly those running older releases, should prioritize updating to the fixed versions (Firefox ESR 153.4, 157, ESR 115.42, or ESR 140.17) to mitigate potential security risks. Organizations relying on Firefox for web access should assess their deployment and ensure timely updates to protect against this issue.

CVE
CVE-2026-100771
Severity
HIGH
CVSS
8.1
EPSS
0.31%
Firefox

Original NVD Description

Undefined behavior in the DOM: Streams component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17.

Related CVEs

Other vulnerabilities affecting the same vendor(s)