GHSA-3qgm-jcxp-m9m6CriticalCVSS 10.0

Sandbox escape due to incorrect boundary conditions in the DOM: Core & HTML component. This...

Published
February 24, 2026
Last Modified
June 30, 2026

🔗 CVE IDs covered (1)

📋 Description

Sandbox escape due to incorrect boundary conditions in the DOM: Core & HTML component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.

🔗 References (36)