PT-2026-41925 · Mozilla · Firefox+1

Surya Dev Singh

·

Published

2026-05-19

·

Updated

2026-05-27

·

CVE-2026-8971

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Firefox versions prior to 151 Thunderbird versions prior to 151
Description A same-origin policy bypass exists in the Networking: JAR component. The same-origin policy is a critical security mechanism that restricts how a document or script loaded from one origin can interact with a resource from another origin.
Recommendations Update Firefox to version 151. Update Thunderbird to version 151.

Fix

Origin Validation Error

Weakness Enumeration

Related Identifiers

CVE-2026-8971
OPENSUSE-SU-2026:10863-1

Affected Products

Firefox
Thunderbird