Mozilla Firefox and Firefox ESR Information Disclosure Vulnerability in Canvas2D Component
Vulnerability
A vulnerability allowing information disclosure has been identified in Mozilla Firefox and Firefox ESR. This issue arises from uninitialized memory in the Graphics: Canvas2D component, which could potentially be exploited to access sensitive information. The vulnerability affects Firefox versions prior to 150, as well as Firefox ESR versions 115.34 and 140.9.
Impact
Exploitation of this vulnerability could lead to unauthorized information disclosure.
Remediation
Users can upgrade to Firefox 150, Firefox ESR 115.35, or Firefox ESR 140.10 to address this vulnerability.
Added: Apr 21, 2026, 3:12 PM
Updated: Apr 21, 2026, 3:12 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
0.6exploitability
6.4remediation
0.0relevance
6.1threat
0.0urgency
2.9incentive
0.0Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
