
CVE-2026-8957 Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. https://www.cve.org/CVERecord?id=CVE-2026-8957
Post summary
CVE-2026-8957 is a privilege escalation vulnerability in Firefox and Thunderbird’s Enterprise Policies component that has already been fixed in the latest releases. The text provides patch details but no evidence of a PoC or active exploitation.

