Mozilla Firefox
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*
- < 149
A JIT miscompilation vulnerability has been identified in the JavaScript engine of Mozilla Firefox. This issue affects Firefox versions prior to 149 and Firefox ESR versions prior to 140.9. The vulnerability arises from incorrect optimizations in the Just-In-Time (JIT) compilation process, which could potentially be exploited to alter the execution flow of scripts.
Exploitation of this vulnerability could lead to arbitrary code execution by causing the JavaScript engine to miscompile code in a way that can be manipulated.
Users can upgrade to Firefox 149 or Firefox ESR 140.9 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.