Mozilla Firefox and Firefox ESR Information Disclosure Vulnerability in Audio/Video Component

Vulnerability

A vulnerability allowing information disclosure has been identified in Mozilla Firefox and Firefox Extended Support Release (ESR) versions prior to 150.0.1 and 115.35.0, respectively. This issue arises from incorrect boundary conditions in the Audio/Video component, which could potentially be exploited to access sensitive information.

Impact

Exploitation of this vulnerability could lead to unauthorized information disclosure.

Remediation

Users can upgrade to Firefox 150.0.1, Firefox ESR 140.10.1, or Firefox ESR 115.35.1 to address this vulnerability.

Added: Apr 28, 2026, 3:36 PM
Updated: Apr 28, 2026, 3:36 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.4
remediation
7.7
relevance
6.8
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.