logo

A Vulnerability in Mozilla Firefox Could Allow for Arbitrary Code Execution

ID: 5080e705-b04c-59bb-99bc-8deeaa1df3b7

STIX ID: report--5080e705-b04c-59bb-99bc-8deeaa1df3b7

Feed Name: CISecurity.org Advisories

Threat Score
75/100

Date Published: 2024-10-10

Date Updated: 2026-04-27

...
...

A use-after-free vulnerability in Mozilla Firefox's Animation timelines (CVE-2024-9680) enables arbitrary code execution in the content process via drive-by compromise (Initial Access: T1189). The vendor reports that this flaw has been observed exploited in the wild and successful exploitation could allow attackers to install programs, view/modify/delete data, or create accounts depending on victim privileges.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.