8.8
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Description
Sandbox escape due to integer overflow in the Graphics component. This vulnerability affects Firefox < 147, Firefox ESR < 115.32, and Firefox ESR < 140.7.
AI Analysis
Sandbox escape vulnerability due to integer overflow in the Graphics component
Basic Information
ID
CVE-2026-0880
Source
mozilla
Published
Jan 13, 2026 at 13:30
Modified
Jan 13, 2026 at 18:41
Affected Product
Vendor
Mozilla
Product
Firefox
Version
unspecified
Affected Versions
Mozilla Firefox unspecified
Mozilla Firefox ESR unspecified
Mozilla Firefox ESR unspecified
Mozilla Firefox ESR unspecified
Mozilla Firefox ESR unspecified
CWE Classification
AI Assessment
AI Score
8.8 / 10
AI Severity
High
Vendor
Mozilla
Product
Firefox
Version
< 147, < 115.32, < 140.7