Skip to content
Abdulaziz Alasaiqah
About Track Record Expertise Writeups Get in touch
Abdulaziz Alasaiqah avatar

Writeups

Vulnerability writeups.

Root-cause analysis and proof of concept for vulnerabilities I discovered and disclosed responsibly. Every entry maps to a public record.

Mozilla Firefox logoMozilla FirefoxToolkit, Form Autofill
sec-moderate CVE-2026-6765

Test-only FormAutofill handlers exposed in production

Four test-only message handlers shipped in Firefox let any compromised renderer read, inject, or delete saved autofill data.

Read writeup
CometChat logoCometChatJS SDK 3.0.12
high CVE-2026-39154

Stored XSS in CometChat group messages

A persistent JavaScript payload in group messages executes in the browser of every member who opens the conversation.

Read writeup
Mozilla Firefox logoMozilla FirefoxGraphics, ImageLib
critical CVE-2026-74943

Use-after-free in RasterImage surface discard

A cross-thread check-then-AddRef race in image surface discard resurrects a freed RasterImage, a content-process use-after-free reachable from a web page.

Read writeup
Mozilla Firefox logoMozilla FirefoxGraphics, Text
sec-high CVE-2026-74945

Uninitialized heap disclosure through a crafted web font

A crafted @font-face leaves an uninitialized-heap gap in the sanitized font; measuring a character leaks process memory two bytes at a time.

Read writeup
Mozilla Firefox logoMozilla FirefoxGraphics, WebRender
sec-moderate CVE-2026-74970

Fission site-isolation bypass via missing PipelineId namespace check

A compromised content process forges a WebRender PipelineId namespace to hijack another origin's image pipeline, bypassing Fission site isolation.

Read writeup
Abdulaziz Alasaiqah

Riyadh, Kingdom of Saudi Arabia

© Abdulaziz Alasaiqah. All rights reserved.

Built in Riyadh