AUGUST 27, 2026
Live Feed
Back to database
Case File

CVE-2026-74986

CRITICAL · CVSS 9.1 EPSS 0.32%

Source: NVD + CISA KEV + EPSS · Published 2026-08-18 · Last synced 2026-08-27

CyberRota Analysis

AI-Generated

A site isolation vulnerability in the CSS Parsing and Computation component of Firefox could potentially allow attackers to access sensitive data from different sites. Users of affected versions prior to Firefox 154 and Firefox ESR 153.1 should prioritize updating their browsers to mitigate the risk of data exposure. Organizations relying on Firefox for secure browsing should ensure their deployments are up to date to protect against this issue.

CVE
CVE-2026-74986
Severity
CRITICAL
CVSS
9.1
EPSS
0.32%
Firefox

Original NVD Description

Site isolation issue in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.

Related CVEs

Other vulnerabilities affecting the same vendor(s)