CVE-2026-84140: Site isolation issue in the DOM: Navigation component
Published Sep 1, 2026
·Updated
Site isolation issue in the DOM: Navigation component. This vulnerability was fixed in Firefox 155 and Firefox ESR 153.2.
Affected Software
3 affected componentsFixes available
Mozilla Firefox<155
155
Mozilla Firefox ESR<153.2
153.2
Mozilla Firefox<155, <153.2
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 155 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 153.2 - Upgrade
Upgrade
Firefoxto a version that resolves this vulnerability.Fixed in 155 - Upgrade
Upgrade
Firefox ESRto a version that resolves this vulnerability.Fixed in 153.2
Event History
Sep 1, 2026
CVE Published
via Mozilla·12:00 AM
Data Sourced
via Mozilla·12:00 AM
DescriptionSeverityAffected Software
Updated
via Mozilla·12:00 AM
Affected Software
CVE Published
via MITRE·12:19 PM
Data Sourced
via MITRE·12:19 PM
Description
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2026-84117
- CVE-2026-84118
- CVE-2026-84119
- CVE-2026-84120
- CVE-2026-84121
- CVE-2026-84122
- CVE-2026-84123
- CVE-2026-84124
- CVE-2026-84125
- CVE-2026-84126
- CVE-2026-84127
- CVE-2026-84128
- CVE-2026-84129
- CVE-2026-84130
- CVE-2026-84131
- CVE-2026-84132
- CVE-2026-84133
- CVE-2026-84134
- CVE-2026-84135
- CVE-2026-84136
- CVE-2026-84137
- CVE-2026-84138
- CVE-2026-84139
- CVE-2026-84140
- CVE-2026-84141
- CVE-2026-84142
- CVE-2026-84143
- CVE-2026-84144
- CVE-2026-84145
- CVE-2026-75874
- CVE-2026-74952
Frequently Asked Questions
1
Which Firefox releases contain the fix?
The issue was fixed in Firefox 155 and Firefox ESR 153.2.
2
Which products should be checked for exposure?
Mozilla Firefox and Mozilla Firefox ESR should be checked. Installations not yet updated to Firefox 155 or Firefox ESR 153.2 may not include the fix.