CVE-2026-4697
Mozilla Firefox, Thunderbird, Red Hat Enterprise Linux 10
Incorrect boundary conditions in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunderbird 140.9.
- CVSS
- 7.5
- EPSS
- 0.69% 49.1% percentile
- CISA KEV
- Not listed
- Published
- 2026.03.24