Mozilla Firefox ESR Sandbox Escape Vulnerability in WebRTC Networking Component

Vulnerability

A sandbox escape vulnerability has been identified in Mozilla Firefox ESR versions prior to 140.10.1. This issue arises from incorrect boundary conditions in the WebRTC networking component, allowing for potential exploitation.

Impact

Exploitation of this vulnerability could lead to a sandbox escape, allowing malicious code to break out of its restricted execution environment.

Remediation

Users can upgrade to Firefox ESR 140.10.1 to address this vulnerability.

Added: Apr 28, 2026, 4:11 PM
Updated: Apr 28, 2026, 4:11 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
10.0
exploitability
4.4
remediation
7.7
relevance
6.9
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.