Mozilla Firefox and Firefox ESR JIT Miscompilation Vulnerability

Vulnerability

A JIT miscompilation vulnerability has been identified in the JavaScript engine of Mozilla Firefox. This issue affects Firefox versions prior to 149 and Firefox ESR versions prior to 140.9. The vulnerability arises from incorrect optimizations in the Just-In-Time (JIT) compilation process, which could potentially be exploited to alter the execution flow of scripts.

Impact

Exploitation of this vulnerability could lead to arbitrary code execution by causing the JavaScript engine to miscompile code in a way that can be manipulated.

Remediation

Users can upgrade to Firefox 149 or Firefox ESR 140.9 to address this vulnerability.

Added: Mar 24, 2026, 1:44 PM
Updated: Mar 24, 2026, 1:44 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
4.2
remediation
7.7
relevance
4.6
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.