CVE-2026-8390

CVE-2026-8390: Use-after-free in the JavaScript: WebAssembly component

Published May 12, 2026
Last update May 13, 2026

CVSS base score

What the vulnerability does

Description

Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 150.0.3.

Key dates

Disclosure timeline

May 12, 2026 CVE published
May 13, 2026 Record updated