OCTOBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-100815

HIGH · CVSS 8.8 EPSS 0.23%

Source: NVD + CISA KEV + EPSS · Published 2026-09-29 · Last synced 2026-10-08

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in the CSS Parsing and Computation component of Firefox can lead to potential code execution or crashes, posing a significant risk to users. Organizations and individuals using affected versions of Firefox should prioritize updating to Firefox ESR 153.4 or Firefox 157 to mitigate this high-severity threat.

CVE
CVE-2026-100815
Severity
HIGH
CVSS
8.8
EPSS
0.23%
Firefox

Original NVD Description

Use-after-free in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.

Related CVEs

Other vulnerabilities affecting the same vendor(s)