Privilege Escalation in Firefox Graphics Component
CVE-2026-74947

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
18 August 2026

What is CVE-2026-74947?

A vulnerability exists within the graphics component of Firefox that allows for privilege escalation due to an invalid pointer dereference. This issue can potentially be exploited by malicious actors to gain elevated access to system resources. The vulnerability has been patched in Firefox version 154 and Firefox Extended Support Release (ESR) version 153.1. Users are recommended to update to these versions to ensure security.

Affected Version(s)

Firefox 153.1

Firefox 154

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

navapon
.