Description
Other issue in Firefox Focus for Android. This vulnerability was fixed in Firefox 155.
Published: 2026-09-01
Score: n/a
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A flaw was identified in Firefox Focus for Android, and the vendor issued a fix in version 155. The description does not specify the exact weakness or exploitation method, so the impact cannot be precisely quantified from the data provided. Based on typical patterns in the Firefox family, such issues can range from memory corruption leading to application crashes to more severe code‑execution or data‑exposure problems. Because the advisory does not mention exploitation in the wild or listing in CISA’s KEV catalog, the vulnerability is not known to have been actively targeted at this time.

Affected Systems

All installations of Firefox Focus for Android that are older than version 155 are potentially affected. No additional sub‑release information is provided, so any release prior to the fix is considered vulnerable unless otherwise documented by Mozilla.

Risk and Exploitability

The CVSS score and EPSS score are not available, but the KEV status indicates the vulnerability is not listed in CISA’s KEV catalog. Without evidence of a live exploit or high‑impact indicator, the risk is uncertain but likely low. Attackers would need access to the vulnerable app to exploit it, yet the lack of publicly reported exploitation efforts suggests that the probability of exploitation is limited. Consequently, the overall threat remains moderate until further details emerge.

Generated by OpenCVE AI on September 1, 2026 at 14:56 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Install the latest Firefox Focus package (version 155 or newer) on all affected devices
  • If the update cannot be applied immediately, uninstall Firefox Focus or disable it to prevent potential exploitation
  • If uninstallation is not an option, configure the device firewall or network restrictions to block Firefox Focus from accessing the internet until the patch is available

Generated by OpenCVE AI on September 1, 2026 at 14:56 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 01 Sep 2026 15:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-200

Tue, 01 Sep 2026 14:15:00 +0000

Type Values Removed Values Added
First Time appeared Mozilla
Mozilla firefox
Vendors & Products Mozilla
Mozilla firefox

Tue, 01 Sep 2026 12:45:00 +0000

Type Values Removed Values Added
Description Other issue in Firefox Focus for Android. This vulnerability was fixed in Firefox 155.
Title Other issue in Firefox Focus for Android
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mozilla

Published:

Updated: 2026-09-01T12:19:01.898Z

Reserved: 2026-09-01T07:25:44.495Z

Link: CVE-2026-84135

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-01T13:20:07.573

Modified: 2026-09-01T13:20:07.573

Link: CVE-2026-84135

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-01T15:00:11Z

Weaknesses
  • CWE-200

    Exposure of Sensitive Information to an Unauthorized Actor