Mitigation Bypass in Firefox Add-ons Manager Component by Mozilla
CVE-2026-74979

Currently unrated

Key Information:

Vendor

Mozilla

Status
Vendor
CVE Published:
18 August 2026

What is CVE-2026-74979?

A notable vulnerability has been identified in the Add-ons Manager component of Mozilla's Firefox browser. This issue allows bypassing established mitigation measures, potentially leading to unauthorized actions by malicious users. The vulnerability affects specific versions of Firefox and Firefox ESR, which have since received patches to secure the application. Users are encouraged to upgrade to the latest versions to ensure their environments are protected against such risks.

Affected Version(s)

Firefox 153.1

Firefox 154

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Tomoya Nakanishi
.