Mozilla Firefox and Thunderbird Incorrect Boundary Conditions Vulnerability in Graphics: ImageLib Component

Vulnerability

A vulnerability exists in the Graphics: ImageLib component of Mozilla Firefox and Thunderbird, specifically in versions prior to 148. This issue arises from incorrect boundary conditions, which could potentially be exploited.

Impact

Exploitation of this vulnerability could lead to a sandbox escape, allowing malicious actors to execute code outside of the intended restrictions.

Remediation

Users can upgrade to Firefox 148 or Thunderbird 148 to address this vulnerability. Firefox ESR users should upgrade to version 115.33.

Added: Feb 24, 2026, 2:58 PM
Updated: Feb 24, 2026, 11:01 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
1.9
exploitability
4.0
remediation
7.7
relevance
3.1
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.