PT-2026-84181 · Mozilla · Firefox+1
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Firefox versions prior to 155
Thunderbird versions prior to 155
Description
Privilege escalation exists in the WebDriver BiDi component. WebDriver BiDi is a protocol that allows for bidirectional communication between the browser and the automation tool.
Recommendations
Update Firefox to version 155.
Update Thunderbird to version 155.
Fix
LPE
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Firefox
Thunderbird