Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-84125

Опубликовано: 01 сент. 2026
Источник: redhat
CVSS3: 8.8
EPSS Низкий

Описание

Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2.

A flaw was found in Firefox. A use-after-free vulnerability in the DOM: Core & HTML component could allow a remote attacker to execute arbitrary code.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10firefoxAffected
Red Hat Enterprise Linux 7firefoxAffected
Red Hat Enterprise Linux 8firefoxAffected
Red Hat Enterprise Linux 9firefoxAffected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-825
https://bugzilla.redhat.com/show_bug.cgi?id=2526775firefox: Firefox: Arbitrary code execution via use-after-free in DOM: Core & HTML

EPSS

Процентиль: 6%
0.00164
Низкий

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 5.4
ubuntu
15 дней назад

[Unknown description]

CVSS3: 5.4
nvd
15 дней назад

Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2.

CVSS3: 5.4
debian
15 дней назад

Use-after-free in the DOM: Core & HTML component. This vulnerability w ...

CVSS3: 5.4
github
15 дней назад

Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 155 and Firefox ESR 153.2.

EPSS

Процентиль: 6%
0.00164
Низкий

8.8 High

CVSS3