Firefox 153 release notes for enterprise admins
Firefox 153
Released 21 July 2026.
These changes apply to Firefox 153 and Firefox ESR 153 unless explicitly stated. Firefox ESR 153 is the new ESR - enterprise changes are no longer backported to Firefox ESR 140. Policies listed under Firefox ESR 153.0.0 became available to ESR admins for the first time in this release.
New in Firefox 153
DisableRemoteSettingsAndAcceptSecurityConsequences: Disable Remote Settings updates and accept the resulting security consequences. Only use this policy when the consequences are fully understood.
Changes
Containers: Updated for the new container color palette. Existing color names are migrated to the new names automatically.Cookies:BehaviorandBehaviorPrivateBrowsingacceptpartition-foreign, the new name for thereject-tracker-and-partition-foreigncookie behavior. Configurations using the old name continue to work.ExtensionSettings: Control extension host permissions usingruntime_allowed_hostsandruntime_blocked_hosts, and control which permissions extensions may request usingallowed_permissions.- Users can no longer change the host permissions of Manifest V3 extensions installed using
force_installed. ExtensionSettings:force_installedandnormal_installedextensions can be installed directly from addons.mozilla.org wheninstall_urlis omitted.Homepage: Added aNewTabOnRestoreoption to open the default start page orabout:newtabafter restoring a previous session.ManagedBookmarks: Bookmarklets usingjavascript:URLs are now supported.- Automatically discovered printers are now listed after manually configured printers in the print destination list. (bug 1996569)
- Firefox installed from a macOS
.pkgpackage can now update without prompting for administrator credentials. (bug 1812480)
Fixes
- AutoConfig can once again set the
browser.startup.homepagepreference to adata:URL, fixing a regression introduced in Firefox 152. (bug 2047962) DisableSecurityBypass: The Allow download button was still shown whenSafeBrowsingwas set tofalse. (bug 1894373)ExtensionSettings: Extensions that were no longer permitted byallowed_typeswere not removed or blocked when the setting changed. (bug 2008100)ExtensionSettings: Individual Windows registryREG_SZvalues overrode the JSON policy configuration when both were present. (bug 2048696)FirefoxHome: The policy was not reflected correctly in the redesigned Settings. (bug 2048048)PasswordManagerEnabled: The policy did not disable the Passwords sidebar panel. (bug 2041232)PopupBlocking: The policy did not lock all of the pop-up permission controls. (bug 1888477)SanitizeOnShutdown: The policy now correctly locks the History settings when configured. (bug 1888451)- The Bookmarks and History sidebars could not be opened while the sidebar was hidden and
PasswordManagerEnabledwas set tofalse. This regressed in Firefox 153.0 and was fixed in a later Firefox 153 release. (bug 2056857)
New in Firefox ESR 153.0.0
AIControls: Configure AI controls.BrowserDataBackup: Disable backup or restore of profile data.DefaultSerialGuardSetting: Control use of the Web Serial API.DisableRemoteImprovements: Prevent Firefox from applying performance, stability, and feature changes between updates.DisableRemoteSettingsAndAcceptSecurityConsequences: Disable Remote Settings updates and accept the resulting security consequences.IPProtectionAvailable: Prevent the built-in VPN from being available to users.LocalNetworkAccess: Configure local network access security features.RelaunchRequired: Require Firefox to be relaunched within a given period and notify the user of the upcoming relaunch.SitePolicies: Fine-grained control over policies for specific sites.VisualSearchEnabled: Enable or disable visual search.XSLTEnabled: Enable or disable support for the XSLTProcessor JavaScript API and the XSLT processing instruction.