Information Disclosure in Firefox by Mozilla
CVE-2026-74971

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
18 August 2026

What is CVE-2026-74971?

A security vulnerability exists in the DOM related to UI Events and Focus Handling within Firefox. This flaw could potentially allow unauthorized access to sensitive information contained within the browser's Document Object Model (DOM). The issue affects specific versions of Firefox and has been addressed in subsequent updates, including Firefox 154 and Firefox ESR versions 140.14 and 153.1. Users are strongly encouraged to update their browsers to mitigate any risks associated with this vulnerability.

Affected Version(s)

Firefox 140.14

Firefox 153.1

Firefox 154

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

avlidienbrunn
.