VDB

CVE-2026-92055

CVE-2026-92055 PUBLISHED CVSS 8.8 HIGH

Reported by mozilla · Published September 15, 2026

Privilege escalation in the DevTools component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

Risk Scores

CVSS 3.1
8.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
MozillaFirefox153.3, 156
MozillaThunderbird153.3, 156
MozillaThunderbird156, 153.3, 156
MozillaFirefox153.3, 156, 153.3

Timeline

  • Sep 15, 2026 Coalition ESS Score
  • Sep 15, 2026 CVE Published
  • Sep 16, 2026 EPSS Score
  • Sep 16, 2026 CVE Updated
  • Sep 18, 2026 EPSS Score

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›