Site Isolation Vulnerability in Firefox by Mozilla
CVE-2026-74968

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
18 August 2026

What is CVE-2026-74968?

A site isolation vulnerability in the Graphics: WebRender component of Firefox enables potential unauthorized access to sensitive information. This flaw can compromise the intended isolation of sites, thus exposing user data to cross-origin leaks. Mozilla has released updates to address this vulnerability in Firefox 154 and Firefox ESR 153.1, reinforcing the importance of immediate software updates to protect users from potential threats.

Affected Version(s)

Firefox 153.1

Firefox 154

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

kiyong
.