Information Disclosure in Firefox Due to Cache API Issues
CVE-2026-74954

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
18 August 2026

What is CVE-2026-74954?

An information disclosure vulnerability has been identified in the Cache API component of Firefox. This issue arises due to side-channel information leak, allowing unauthorized access to sensitive data. The vulnerability has been addressed in Firefox version 154 and Firefox ESR version 153.1, ensuring enhanced security for users by preventing potential exploitation. Users are advised to update their browsers to mitigate risks associated with this vulnerability.

Affected Version(s)

Firefox 153.1

Firefox 154

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Tomoya Nakanishi
.