Spoofing issue in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2.
History

Wed, 02 Sep 2026 03:45:00 +0000

Type Values Removed Values Added
Weaknesses CWE-200
CWE-639

Tue, 01 Sep 2026 22:00:00 +0000

Type Values Removed Values Added
Description Spoofing issue in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 155 and Firefox ESR 153.2. Spoofing issue in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2.
Weaknesses CWE-200
CWE-639
References

Tue, 01 Sep 2026 14:45:00 +0000

Type Values Removed Values Added
First Time appeared Mozilla
Mozilla firefox
Vendors & Products Mozilla
Mozilla firefox

Tue, 01 Sep 2026 12:45:00 +0000

Type Values Removed Values Added
Description Spoofing issue in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 155 and Firefox ESR 153.2.
Title Spoofing issue in the DOM: Core & HTML component
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mozilla

Published: 2026-09-01T12:19:03.931Z

Updated: 2026-09-01T21:44:13.110Z

Reserved: 2026-09-01T07:25:48.803Z

Link: CVE-2026-84137

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-01T13:20:07.810

Modified: 2026-09-01T22:17:15.617

Link: CVE-2026-84137

cve-icon Redhat

No data.