REDHAT-BUG-2517866: Medium severity Mozilla Firefox vulnerability
Published Aug 18, 2026
·Updated
Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1.
Affected Software
2 affected components
Mozilla Firefox<154
Mozilla Firefox ESR<140.14, <153.1
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Firefoxto a version that resolves this vulnerability.Fixed in 154 - Upgrade
Upgrade
Firefox ESRto a version that resolves this vulnerability.Fixed in 140.14 - Upgrade
Upgrade
Firefox ESRto a version that resolves this vulnerability.Fixed in 153.1
Event History
Aug 18, 2026
Data Sourced
via Red Hat·12:56 PM
DescriptionSeverityAffected Software