CVE-2026-92035

Summary

Sandbox escape due to incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, and Thunderbird 156.

Affected Software

VendorProductVersion RangeStatus
MozillaFirefox153.3 <= 153.*unaffected
MozillaFirefox156 <= *unaffected
MozillaThunderbird156 <= *unaffected

Weaknesses

References