Home 140.8 (rpm)
unaffected
148 (rpm)
unaffected
140.8 (rpm)
unaffected
148 (rpm)
unaffected
Description
Same-origin policy bypass in the Networking: JAR component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
Product status
148 (rpm)
148 (rpm)
Credits
Surya Dev Singh
References
bugzilla.mozilla.org/show_bug.cgi?id=2008426
www.mozilla.org/security/advisories/mfsa2026-13/
www.mozilla.org/security/advisories/mfsa2026-15/
www.mozilla.org/security/advisories/mfsa2026-16/
www.mozilla.org/security/advisories/mfsa2026-17/