Mozilla Foundation Security Advisory 2026-90
Security Vulnerabilities fixed in Firefox 156
- Announced
- September 15, 2026
- Impact
- high
- Products
- Firefox
- Fixed in
-
- Firefox 156
Note: We have changed how we publish advisories. We no longer roll all internally identified memory safety vulnerabilities into a single CVE and are now issuing an advisory for every individual bug.
#CVE-2026-92033: Privilege escalation in Firefox for Android
- Reporter
- Steven Julian
- Impact
- high
References
#CVE-2026-92005: Use-after-free in the Audio/Video: Web Codecs component
- Reporter
- devdharan9424@gmail.com
- Impact
- high
References
#CVE-2026-92006: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92007: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92008: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92009: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92010: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92011: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92012: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92013: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92015: Privilege escalation in the WebExtensions component
- Reporter
- Quy Pham
- Impact
- high
References
#CVE-2026-92034: Site isolation issue in the Graphics component
- Reporter
- Steven Julian
- Impact
- high
References
#CVE-2026-92035: Sandbox escape due to incorrect boundary conditions in the Graphics component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92016: Use-after-free in the Disability Access APIs component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92017: Privilege escalation in the DOM: Service Workers component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92018: Sandbox escape in the DOM: Core & HTML component
- Reporter
- Quy Pham
- Impact
- high
References
#CVE-2026-92019: Mitigation bypass in the Remote Settings Client component
- Reporter
- Shu Takahashi
- Impact
- high
References
#CVE-2026-92020: Privilege escalation due to incorrect boundary conditions in the Graphics: WebRender component
- Reporter
- Rintaro Kawasugi
- Impact
- high
References
#CVE-2026-92022: Use-after-free in the DOM: HTML Parser component
- Reporter
- Seohyeon Maeng
- Impact
- high
References
#CVE-2026-92023: Use-after-free in the XML component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92024: Use-after-free in the SVG component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92025: Use-after-free in the DOM: Navigation component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92026: Use-after-free in the Networking component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92036: Incorrect boundary conditions in the Networking: HTTP component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92027: Use-after-free in the DOM: Streams component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92028: Use-after-free in the DOM: Core & HTML component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92029: Use-after-free in the SVG component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92037: Incorrect boundary conditions in the DOM: Animation component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92038: Mitigation bypass in the Remote Settings Client component
- Reporter
- Mozilla
- Impact
- high
References
#CVE-2026-92039: Mitigation bypass in the DOM: Notifications component
- Reporter
- tiebuchen
- Impact
- moderate
References
#CVE-2026-92040: Use-after-free in the JavaScript: WebAssembly component
- Reporter
- Mozilla
- Impact
- moderate
References
#CVE-2026-92041: Mitigation bypass in the DOM: Networking component
- Reporter
- Atsushi Sada
- Impact
- moderate
References
#CVE-2026-92042: Race condition in the DOM: Content Processes component
- Reporter
- Mozilla
- Impact
- moderate
References
#CVE-2026-92043: Privilege escalation due to incorrect boundary conditions in the Audio/Video component
- Reporter
- Mozilla
- Impact
- moderate
References
#CVE-2026-92044: Information disclosure in the Networking: HTTP component
- Reporter
- Gee-netics
- Impact
- moderate
References
#CVE-2026-92045: Sandbox escape due to incorrect boundary conditions in the WebRTC component
- Reporter
- Mozilla
- Impact
- moderate
References
#CVE-2026-92030: Mitigation bypass in the DOM: Copy & Paste and Drag & Drop component
- Reporter
- anas cherni
- Impact
- moderate
References
#CVE-2026-92046: Use-after-free in the Graphics component
- Reporter
- Mozilla
- Impact
- moderate
References
#CVE-2026-92047: Privilege escalation in the Crash Reporting component
- Reporter
- Mozilla
- Impact
- moderate
References
#CVE-2026-92048: Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component
- Reporter
- Mozilla
- Impact
- moderate
References
#CVE-2026-92049: Use-after-free in the Widget: Win32 component
- Reporter
- Mozilla
- Impact
- moderate
References
#CVE-2026-92050: Sandbox escape due to race condition in the XPConnect component
- Reporter
- Mozilla
- Impact
- moderate
References
#CVE-2026-92051: Spoofing issue due to invalid pointer in the Graphics component
- Reporter
- Mozilla
- Impact
- moderate
References
#CVE-2026-92052: Privilege escalation due to uninitialized memory in the Graphics: CanvasWebGL component
- Reporter
- Mozilla
- Impact
- moderate
References
#CVE-2026-92053: Privilege escalation in the Graphics: CanvasWebGL component
- Reporter
- Mozilla
- Impact
- moderate
References
#CVE-2026-92054: Privilege escalation in the Memory component
- Reporter
- Amy Burnett of OpenAI
- Impact
- moderate
References
#CVE-2026-92055: Privilege escalation in the DevTools component
- Reporter
- Finn Westendorf
- Impact
- moderate
References
#CVE-2026-92056: Use-after-free in the Graphics: Text component
- Reporter
- r00tdaddy
- Impact
- moderate
References
#CVE-2026-92057: Mitigation bypass in the Enterprise Policies component
- Reporter
- Shu Takahashi
- Impact
- moderate
References
#CVE-2026-92031: Information disclosure in the Graphics: ImageLib component
- Reporter
- Qi Qin
- Impact
- moderate
References
#CVE-2026-92032: Sandbox escape due to invalid pointer in the Graphics component
- Reporter
- Mozilla
- Impact
- moderate
References
#CVE-2026-92058: Use-after-free in the Graphics component
- Reporter
- Mozilla
- Impact
- moderate
References
#CVE-2026-92059: Incorrect boundary conditions in the DOM: Editor component
- Reporter
- Mozilla
- Impact
- moderate
References
#CVE-2026-92060: Use-after-free in the Internationalization component
- Reporter
- Mozilla
- Impact
- low
References
#CVE-2026-92061: Incorrect boundary conditions in the Security: Process Sandboxing component
- Reporter
- Mozilla
- Impact
- low
References
#CVE-2026-92062: Privilege escalation in the Session Restore component
- Reporter
- Mozilla
- Impact
- low
References
#CVE-2026-92063: Denial-of-service in the Audio/Video component
- Reporter
- He Huang
- Impact
- low
References
#CVE-2026-92064: Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component
- Reporter
- Mozilla
- Impact
- low
References
#CVE-2026-92065: Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component
- Reporter
- Mozilla
- Impact
- low
References
#CVE-2026-92066: Sandbox escape in the Profile Backup component
- Reporter
- Mozilla
- Impact
- low
References
#CVE-2026-92067: Use-after-free in the Widget: Gtk component
- Reporter
- Mozilla
- Impact
- low
References
#CVE-2026-92068: Site isolation issue in the Reader Mode component
- Reporter
- Mozilla
- Impact
- low
References
#CVE-2026-92069: Spoofing issue in the DOM: Navigation component
- Reporter
- Mozilla
- Impact
- low
References
#CVE-2026-92070: Information disclosure in the Networking component
- Reporter
- Mohamed Mbarek
- Impact
- low
References
#CVE-2026-92071: Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component
- Reporter
- Mozilla
- Impact
- low
References
#CVE-2026-92072: Incorrect boundary conditions in the Safe Browsing component
- Reporter
- Mozilla
- Impact
- low
References
#CVE-2026-92073: Privilege escalation in the Enterprise Policies component
- Reporter
- Tyler Maclachlan
- Impact
- low
References
#CVE-2026-92074: Mitigation bypass in the Popup Blocker component
- Reporter
- Finn Westendorf
- Impact
- low
References
#CVE-2026-92075: Mitigation bypass in the Networking component
- Reporter
- Takeshi Kaneko
- Impact
- low
References
#CVE-2026-92076: Incorrect boundary conditions in the Networking component
- Reporter
- Mozilla
- Impact
- low
References
#CVE-2026-92077: Denial-of-service in the SVG component
- Reporter
- sak
- Impact
- low
References
#CVE-2026-92078: Denial-of-service in the Security component
- Reporter
- Dominik Bay
- Impact
- low
References
#CVE-2026-92079: Mitigation bypass in the Widget: Win32 component
- Reporter
- barbarossa404
- Impact
- low