What is CVE-2026-74944?
This vulnerability is a use-after-free flaw in Firefox's DOM: Core & HTML component. Exploitation could lead to a browser crash or potentially arbitrary code execution. Affected users must immediately update to Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
Azərbaycanca: Bu boşluq Firefox-un DOM: Core & HTML komponentində "use-after-free" zəifliyidir. Zəiflikdən istifadə brauzerin çökməsinə və ya potensial kod icrasına səbəb ola bilər. Təsirə məruz qalan istifadəçilər dərhal Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14 və Thunderbird 153.1 versiyalarına yeniləməlidirlər.
Related CVEs
link basis: same weakness class CWE-416
FAQ2
Which software component is affected by CVE-2026-74944?
This vulnerability is a 'use-after-free' flaw found in the DOM: Core & HTML component of Firefox.
What could happen as a result of exploiting CVE-2026-74944?
The exploitation could lead to a browser crash or potentially arbitrary code execution.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.