mozilla firefox CVE-2026-8950 is a vulnerability in Mozilla Firefox
Published on May 19, 2026

Same-origin policy bypass in the Networking: HTTP component
Same-origin policy bypass in the Networking: HTTP component. This vulnerability was fixed in Firefox 151 and Firefox ESR 140.11.

NVD


Products Associated with CVE-2026-8950

Want to know whenever a new CVE is published for Mozilla Firefox? stack.watch will email you.

 

Affected Versions

Mozilla Firefox: