PT-2026-38428 · Mozilla+1 · Firefox+1

·

CVE-2026-8090

·

Published

2026-05-07

·

Updated

2026-06-29

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Firefox versions prior to 150.0.2 Firefox ESR versions prior to 140.10.2 Firefox ESR versions prior to 115.35.2
Description A use-after-free issue exists in the DOM: Networking component. Use-after-free is a memory corruption flaw that occurs when an application continues to use a pointer after it has been freed.
Recommendations Update to version 150.0.2 Update to ESR version 140.10.2 Update to ESR version 115.35.2

Fix

DoS

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:19160
ALSA-2026:20566
ALSA-2026:20574
BDU:2026-07923
CVE-2026-8090
OESA-2026-2292
OESA-2026-2349
OESA-2026-2350
OESA-2026-2351
OESA-2026-2352
OPENSUSE-SU-2026:10720-1
OPENSUSE-SU-2026:10737-1
OPENSUSE-SU-2026:10738-1
OPENSUSE-SU-2026:21168-1
RHSA-2026:19160
RHSA-2026:20566
RHSA-2026:20574
RHSA-2026:24508
RHSA-2026:24509
RHSA-2026:24510
RHSA-2026:24511
RHSA-2026:24516
RHSA-2026:24755
RHSA-2026:24983
RHSA-2026:25015

Affected Products

Firefox
Red Os