CVE-2026-100806

Published: Set 29, 2026 Last Modified: Set 29, 2026
ExploitDB:
Other exploit source:
Google Dorks:
MEDIUM 4,3
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0
Attack Vector: network
Attack Complexity: low
Privileges Required: none
User Interaction: required
Scope: unchanged
Confidentiality: none
Integrity: none
Availability: low

Description

AI Translation Available

Uninitialized memory in the Graphics: WebGPU component. This vulnerability was fixed in Firefox ESR 153.4 and Firefox 157.

457

Use of Uninitialized Variable

Draft
Common Consequences
Security Scopes Affected:
Availability Integrity Other Authorization
Potential Impacts:
Other
Applicable Platforms
Languages: C, C++, Perl, PHP, Not Language-Specific
View CWE Details
https://bugzilla.mozilla.org/show_bug.cgi?id=2060408
https://www.mozilla.org/security/advisories/mfsa2026-100/
https://www.mozilla.org/security/advisories/mfsa2026-97/