What is CVE-2026-74936?
CVE-2026-74936 is a use-after-free vulnerability in the JavaScript WebAssembly component of Firefox, Thunderbird, and their ESR versions. This critical flaw could allow remote code execution within the browser context. Users must immediately update to the specified patched versions.
Azərbaycanca: CVE-2026-74936 Firefox, Thunderbird və onların ESR versiyalarının JavaScript: WebAssembly komponentində 'Use-after-free' zəifliyidir. Bu kritik boşluq brauzer kontekstində uzaqdan kod icrasına səbəb ola bilər. İstifadəçilər dərhal qeyd olunan ən son versiyalara yeniləməlidirlər.
Related CVEs
link basis: same weakness class CWE-416
FAQ2
Which software is affected by CVE-2026-74936?
This vulnerability affects Firefox, Thunderbird, and their ESR versions.
What is the nature of CVE-2026-74936 and its potential impact?
It is a 'use-after-free' vulnerability that could lead to remote code execution (RCE) within the browser context.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.