CVE-2026-4690
HIGH
mozilla
NVD
CVSS Score
8.6
Severity
HIGH
Published
Mar 24, 2026
Vendor
mozilla
Description
Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. This vulnerability affects Firefox < 149, Firefox ESR < 115.34, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9.