CVE-2026-8945: Sandbox escape in Firefox and Firefox Focus for Android
Published May 19, 2026
·Updated
Sandbox escape in Firefox and Firefox Focus for Android. This vulnerability was fixed in Firefox 151.
Affected Software
3 affected componentsFixes available
Mozilla Firefox<151
151
Mozilla Firefox<151.0.0
Mozilla Firefox Focus Android<151.0
Event History
May 19, 2026
CVE Published
via Mozilla·12:00 AM
Data Sourced
via Mozilla·12:00 AM
DescriptionSeverityAffected Software
CVE Published
via MITRE·12:29 PM
Data Sourced
via MITRE·12:29 PM
Description
Data Sourced
via NVD·02:16 PM
DescriptionSeverityWeaknessAffected Software
Oct 14, 58358
Event
via FIRST·01:42 AM
Frequently Asked Questions
1
What is the severity of CVE-2026-8945?
CVE-2026-8945 has been assigned a critical severity rating due to its potential for sandbox escape.
2
How do I fix CVE-2026-8945?
To fix CVE-2026-8945, upgrade to Firefox version 151 or later.
3
What versions of Firefox are affected by CVE-2026-8945?
CVE-2026-8945 affects all versions of Firefox prior to 151.
4
Is Firefox Focus for Android affected by CVE-2026-8945?
Yes, Firefox Focus for Android is also affected by CVE-2026-8945.
5
What type of vulnerability is CVE-2026-8945?
CVE-2026-8945 is classified as a sandbox escape vulnerability.