REDHAT-BUG-2442313: Low severity Mozilla Firefox vulnerability
Published Feb 24, 2026
·Updated
Same-origin policy bypass in the Networking: JAR component. This vulnerability affects Firefox < 148 and Firefox ESR < 140.8.
Affected Software
2 affected components
Mozilla Firefox<148
Mozilla Firefox ESR<140.8
Event History
Feb 24, 2026
Data Sourced
via Red Hat·02:04 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2442313?
The severity of REDHAT-BUG-2442313 is classified as critical due to the potential for same-origin policy bypass.
2
How do I fix REDHAT-BUG-2442313?
To fix REDHAT-BUG-2442313, upgrade Firefox to version 148 or later, or Firefox ESR to version 140.8 or later.
3
Which versions of Firefox are affected by REDHAT-BUG-2442313?
Firefox versions prior to 148 and Firefox ESR versions prior to 140.8 are affected by REDHAT-BUG-2442313.
4
What does the vulnerability REDHAT-BUG-2442313 affect?
REDHAT-BUG-2442313 affects the Networking: JAR component in Firefox and Firefox ESR.
5
Is there a workaround for REDHAT-BUG-2442313?
There are no official workarounds for REDHAT-BUG-2442313; upgrading to the latest version is recommended.