What is CVE-2026-74959?
This CVE refers to a mitigation bypass vulnerability in the 'Storage: Cache API' component of Firefox and Thunderbird browsers. It could allow attackers to circumvent existing protection mechanisms. The issue has been fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1, so users should update to these versions.
Azərbaycanca: Bu CVE, Firefox və Thunderbird brauzerlərində "Storage: Cache API" komponentində aşkar edilmiş bir müdafiədən yayınma zəifliyidir. Bu, mövcud mühafizə mexanizmlərinin keçilməsinə şərait yarada bilər. Zəiflik Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14 və Thunderbird 153.1 versiyalarında aradan qaldırılıb, ona görə də istifadəçilərə bu versiyalara yeniləmə etmələri tövsiyə olunur.
FAQ2
In which component of which software products was the CVE-2026-74959 vulnerability discovered?
This vulnerability is a mitigation bypass issue discovered in the 'Storage: Cache API' component of the Firefox and Thunderbird browsers.
What should users do to protect themselves against the CVE-2026-74959 vulnerability?
Users are advised to update to versions Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, or Thunderbird 153.1.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.