CVE-2026-8090 PUBLISHED

Use-after-free in the DOM: Networking component

Assigner: mozilla
Reserved: 07.05.2026 Published: 07.05.2026 Updated: 07.05.2026

Use-after-free in the DOM: Networking component. This vulnerability was fixed in Firefox 150.0.2, Firefox ESR 140.10.2, and Firefox ESR 115.35.2.

Product Status

Vendor Mozilla
Product Firefox
Versions
  • unaffected from 115.35.2 to 115.* (incl.)
  • unaffected from 140.10.2 to 140.* (incl.)
  • unaffected from 150.0.2 to * (incl.)

Credits

  • Kevin Brosnan

References