CVE-2026-92056: Use-after-free in the Graphics: Text component
Published Sep 15, 2026
·Updated
Use-after-free in the Graphics: Text component. This vulnerability was fixed in Firefox 156 and Firefox ESR 153.3.
Affected Software
1 affected component
Mozilla Firefox=156, =ESR 153.3
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Mozilla Firefoxto a version that resolves this vulnerability.Fixed in 156 - Upgrade
Upgrade
Mozilla Firefox ESRto a version that resolves this vulnerability.Fixed in 153.3
Event History
Sep 15, 2026
CVE Published
via MITRE·12:34 PM
Data Sourced
via MITRE·12:34 PM
Description
Frequently Asked Questions
1
Which Firefox releases contain the fix?
The issue was fixed in Firefox 156 and Firefox ESR 153.3.
2
What should organizations update to?
Update Firefox to version 156 or Firefox ESR to version 153.3, as applicable.