Π›ΠΎΠ³ΠΎΡ‚ΠΈΠΏ exploitDog
Консоль
Π›ΠΎΠ³ΠΎΡ‚ΠΈΠΏ exploitDog

exploitDog

redhat Π»ΠΎΠ³ΠΎΡ‚ΠΈΠΏ

CVE-2026-74974

ΠžΠΏΡƒΠ±Π»ΠΈΠΊΠΎΠ²Π°Π½ΠΎ: 18 Π°Π²Π³. 2026
Π˜ΡΡ‚ΠΎΡ‡Π½ΠΈΠΊ: redhat
CVSS3: 6.1
EPSS Низкий

ОписаниС

Same-origin policy bypass in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.

A flaw was found in Firefox and Thunderbird. The Mozilla Foundation's Security Advisory describes the following issue: Same-origin policy bypass in the Graphics: ImageLib component

ΠžΡ‚Ρ‡Π΅Ρ‚

Red Hat Product Security rates the severity of this flaw as determined by the Mozilla Foundation Security Advisory.

Π—Π°Ρ‚Ρ€ΠΎΠ½ΡƒΡ‚Ρ‹Π΅ ΠΏΠ°ΠΊΠ΅Ρ‚Ρ‹

ΠŸΠ»Π°Ρ‚Ρ„ΠΎΡ€ΠΌΠ°ΠŸΠ°ΠΊΠ΅Ρ‚Π‘ΠΎΡΡ‚ΠΎΡΠ½ΠΈΠ΅Π Π΅ΠΊΠΎΠΌΠ΅Π½Π΄Π°Ρ†ΠΈΡΠ Π΅Π»ΠΈΠ·
Red Hat Enterprise Linux 10rhel10/firefox-flatpakAffected
Red Hat Enterprise Linux 10rhel10/thunderbird-flatpakAffected
Red Hat Enterprise Linux 10thunderbirdAffected
Red Hat Enterprise Linux 6firefoxOut of support scope
Red Hat Enterprise Linux 6thunderbirdOut of support scope
Red Hat Enterprise Linux 7firefoxAffected
Red Hat Enterprise Linux 7thunderbirdOut of support scope
Red Hat Enterprise Linux 8thunderbirdAffected
Red Hat Enterprise Linux 9thunderbirdAffected
Red Hat Enterprise Linux 10firefoxFixedRHSA-2026:5889924.08.2026

ΠŸΠΎΠΊΠ°Π·Ρ‹Π²Π°Ρ‚ΡŒ ΠΏΠΎ

Π”ΠΎΠΏΠΎΠ»Π½ΠΈΡ‚Π΅Π»ΡŒΠ½Π°Ρ информация

Бтатус:

Moderate
Π”Π΅Ρ„Π΅ΠΊΡ‚:
CWE-346
https://bugzilla.redhat.com/show_bug.cgi?id=2517853firefox: thunderbird: Same-origin policy bypass in the Graphics: ImageLib component

EPSS

ΠŸΡ€ΠΎΡ†Π΅Π½Ρ‚ΠΈΠ»ΡŒ: 3%
0.00135
Низкий

6.1 Medium

CVSS3

БвязанныС уязвимости

CVSS3: 5.4
ubuntu
9 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄

(Same-origin policy bypass in the Graphics: ImageLib component. This vu ...)

CVSS3: 5.4
nvd
10 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄

Same-origin policy bypass in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.

CVSS3: 5.4
debian
10 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄

Same-origin policy bypass in the Graphics: ImageLib component. This vu ...

CVSS3: 5.4
github
9 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄

Same-origin policy bypass in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, and Firefox ESR 153.1.

suse-cvrf
9 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄

Security update for MozillaFirefox

EPSS

ΠŸΡ€ΠΎΡ†Π΅Π½Ρ‚ΠΈΠ»ΡŒ: 3%
0.00135
Низкий

6.1 Medium

CVSS3

Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡ‚ΡŒ CVE-2026-74974