OCTOBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-100805

HIGH · CVSS 7.5 EPSS 0.22%

Source: NVD + CISA KEV + EPSS · Published 2026-09-29 · Last synced 2026-10-08

CyberRota Analysis

AI-Generated

A race condition and use-after-free vulnerability in the Audio/Video component of Firefox could allow an attacker to execute arbitrary code, potentially compromising user systems. Organizations using affected versions of Firefox should prioritize patching to mitigate the risk of exploitation, especially in environments where web applications are heavily utilized. Users should upgrade to Firefox version 157 or later to ensure protection against this high-severity issue.

CVE
CVE-2026-100805
Severity
HIGH
CVSS
7.5
EPSS
0.22%
Firefox

Original NVD Description

Race condition, use-after-free in the Audio/Video component. This vulnerability was fixed in Thunderbird 157 and Firefox 157.