Mozilla Firefox and Firefox ESR Denial-of-Service Vulnerability in Web Codecs Component

Vulnerability

A denial-of-service vulnerability has been identified in the Audio/Video: Web Codecs component of Mozilla Firefox and Firefox ESR. This issue arises from an invalid pointer, which can lead to application instability. The vulnerability affects Firefox versions prior to 151 and Firefox ESR versions prior to 140.11.

Impact

Exploitation of this vulnerability leads to a denial-of-service condition, causing the application to become unresponsive or unavailable.

Remediation

Users can upgrade to Firefox 151 or Firefox ESR 140.11 to address this vulnerability.

Added: May 19, 2026, 2:34 PM
Updated: May 19, 2026, 2:34 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
4.2
remediation
7.7
relevance
8.8
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.