CVE-2026-75874

Updated on 18 Aug 2026

Severity

Awaiting Analysis

Details

CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Overview

About vulnerability

Sandbox escape in the Remote Settings Client component. This vulnerability was fixed in Firefox 154, Thunderbird 154, Firefox ESR 115.40, Firefox ESR 140.15, Firefox ESR 153.2, Thunderbird 140.15, and Thunderbird 153.2.

Details

Affected product:
AlmaLinux 9.2 ESU
Affected packages:
thunderbird @ 115.4.1 (+1 more)

Fixes