OCTOBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-100801

HIGH · CVSS 8.8 EPSS 0.25%

Source: NVD + CISA KEV + EPSS · Published 2026-09-29 · Last synced 2026-10-08

CyberRota Analysis

AI-Generated

A privilege escalation vulnerability in the DLL Services component of Firefox could allow attackers to gain elevated permissions on affected systems. This high-severity flaw, rated 8.8 on the CVSS scale, necessitates immediate attention from organizations using Firefox, particularly those operating in sensitive environments or handling critical data. Users should ensure they are running the patched versions: Firefox ESR 153.4, Firefox 157, or Firefox ESR 140.17 to mitigate the risk.

CVE
CVE-2026-100801
Severity
HIGH
CVSS
8.8
EPSS
0.25%
Firefox

Original NVD Description

Privilege escalation in the DLL Services component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, and Firefox ESR 140.17.