Mitigation Bypass in Networking HTTP Component Affects Firefox by Mozilla
CVE-2026-4700
9.8CRITICAL
What is CVE-2026-4700?
This vulnerability involves a weakness in the Networking: HTTP component of Firefox that allows a bypass of certain mitigation measures. The flaw affects Firefox versions prior to 149 and Firefox ESR versions before 140.9, potentially exposing users to security risks. Users are urged to update their browsers to the latest versions to ensure protection against this issue.
Affected Version(s)
Firefox < 149
Firefox ESR < 140.9
Thunderbird < 149