Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
7.5

Firefox Security Update: Unpatched Flaw Allows Malicious Code Execution

RHSA-2026:3497
Summary

Firefox users are at risk of malicious code execution due to an unpatched flaw. If left unaddressed, this vulnerability could allow attackers to take control of a user's system. Update to the latest version of Firefox to resolve this issue.

What to do
  • Update redhat firefox to version 0:140.8.0-2.el9_6.
  • Update redhat firefox-debuginfo to version 0:140.8.0-2.el9_6.
  • Update redhat firefox-debugsource to version 0:140.8.0-2.el9_6.
  • Update redhat firefox-x11 to version 0:140.8.0-2.el9_6.
Affected software
VendorProductAffected versionsFix available
redhat firefox <= 0:140.8.0-2.el9_6 0:140.8.0-2.el9_6
redhat firefox-debuginfo <= 0:140.8.0-2.el9_6 0:140.8.0-2.el9_6
redhat firefox-debugsource <= 0:140.8.0-2.el9_6 0:140.8.0-2.el9_6
redhat firefox-x11 <= 0:140.8.0-2.el9_6 0:140.8.0-2.el9_6
Original title
Red Hat Security Advisory: firefox security update
osv CVSS3.1 7.5
Published: 2 Mar 2026 · Updated: 13 Mar 2026 · First seen: 10 Mar 2026