9.8
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
Use-after-free in the JavaScript Engine component. This vulnerability affects Firefox < 147 and Firefox ESR < 140.7.
AI Analysis
Use-after-free vulnerability in the JavaScript Engine component of Firefox, allowing for potential code execution and data compromise.
Basic Information
ID
CVE-2026-0884
Source
mozilla
Published
Jan 13, 2026 at 13:30
Modified
Jan 13, 2026 at 15:37
Affected Product
Vendor
Mozilla
Product
Firefox
Version
unspecified
Affected Versions
Mozilla Firefox unspecified
Mozilla Firefox ESR unspecified
Mozilla Firefox ESR unspecified
CWE Classification
AI Assessment
AI Score
9.8 / 10
AI Severity
Critical
Vendor
Mozilla
Product
Firefox
Version
< 147, < 140.7