What is CVE-2026-74953?
CVE-2026-74953 is a privilege escalation vulnerability in the 'Networking: Cookies' component of Firefox and Thunderbird. This flaw could allow an attacker to gain higher privileges on the system. The vulnerability has been fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1, so users should update to the specified versions immediately.
Azərbaycanca: CVE-2026-74953, Firefox və Thunderbird-də "Networking: Cookies" komponentində aşkarlanmış imtiyaz yüksəltmə (privilege escalation) zəifliyidir. Bu boşluq təcavüzkara sistem üzərində daha yüksək hüquqlar əldə etməyə imkan verə bilər. Zəiflik Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14 və Thunderbird 153.1 versiyalarında aradan qaldırılıb, ona görə də istifadəçilər dərhal göstərilən versiyalara yeniləmə etməlidir.
Related CVEs
link basis: same weakness class CWE-269
FAQ2
Which software does CVE-2026-74953 affect?
This vulnerability affects the 'Networking: Cookies' component in Firefox and Thunderbird.
Which version of Firefox ESR should I update to in order to protect against CVE-2026-74953?
Firefox ESR users should update to version 140.14 or 153.1, as the vulnerability has been fixed in these versions.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.