Description
Privilege escalation due to use-after-free in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2.
Published: 2026-09-01
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Privilege Escalation
Action: Apply Patch
AI Analysis

Impact

The vulnerability is a use‑after‑free flaw in the WebGPU component of Mozilla’s Graphics engine. When exploited, it allows code execution with the same privileges as the currently running Firefox or Thunderbird process, thereby enabling an attacker to gain elevated authority on the affected system. The weakness conforms to the definition of Use‑After‑Free, identified as CWE‑416.

Affected Systems

All versions of Mozilla Firefox released before the security fixes in Firefox 155 and Firefox ESR 153.2 are impacted, as are all older releases of Mozilla Thunderbird prior to Thunderbird 155 and Thunderbird 153.2. The flaw is confined to these products regardless of operating system or hardware platform. No other vendors or products are listed as affected.

Risk and Exploitability

Given the high severity CVSS score of 8.8, the flaw permits privilege escalation with significant potential impact to confidentiality, integrity, and availability. The attack vector is inferred to be through malicious web content that engages WebGPU resources, requiring the user to visit or load such content. No EPSS score is available, so exploitation probability is not quantified. The vulnerability is not listed in the CISA KEV catalog, indicating no confirmed public exploitation at the time of reporting.

Generated by OpenCVE AI on September 2, 2026 at 03:46 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Mozilla Firefox to version 155 or later, or to Firefox ESR 153.2 or later.
  • Upgrade Mozilla Thunderbird to version 155 or later, or to Thunderbird ESR 153.2 or later.
  • If an update cannot be applied immediately, disable WebGPU by setting the about:config preference browser.webgpu.enabled to false as a temporary mitigation.

Generated by OpenCVE AI on September 2, 2026 at 03:46 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 02 Sep 2026 10:45:00 +0000

Type Values Removed Values Added
First Time appeared Mozilla thunderbird
CPEs cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*
Vendors & Products Mozilla thunderbird

Tue, 01 Sep 2026 22:00:00 +0000

Type Values Removed Values Added
Description Privilege escalation due to use-after-free in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 155 and Firefox ESR 153.2. Privilege escalation due to use-after-free in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2.
References

Tue, 01 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 01 Sep 2026 14:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-416

Tue, 01 Sep 2026 13:45:00 +0000

Type Values Removed Values Added
First Time appeared Mozilla
Mozilla firefox
Vendors & Products Mozilla
Mozilla firefox

Tue, 01 Sep 2026 12:45:00 +0000

Type Values Removed Values Added
Description Privilege escalation due to use-after-free in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 155 and Firefox ESR 153.2.
Title Privilege escalation due to use-after-free in the Graphics: WebGPU component
References

Subscriptions

Mozilla Firefox Thunderbird
cve-icon MITRE

Status: PUBLISHED

Assigner: mozilla

Published:

Updated: 2026-09-02T03:55:41.775Z

Reserved: 2026-09-01T07:25:15.751Z

Link: CVE-2026-84123

cve-icon Vulnrichment

Updated: 2026-09-01T14:16:44.658Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-01T13:20:06.160

Modified: 2026-09-02T15:00:58.883

Link: CVE-2026-84123

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-02T04:00:09Z

Weaknesses