SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-84118

MEDIUM · CVSS 5.4 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-09-01 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in the JavaScript: GC component affects Firefox and Java, potentially allowing attackers to execute arbitrary code or crash the application. Users of these products, particularly those running versions prior to Firefox 155 and Firefox ESR 153.2, should prioritize applying the latest updates to mitigate the risk.

CVE
CVE-2026-84118
Severity
MEDIUM
CVSS
5.4
EPSS
0.20%
Firefox Java

Original NVD Description

Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2.

Related CVEs

Other vulnerabilities affecting the same vendor(s)