Home
/
CVE-2026-4687
CVSS v3
8.6
NVD published
2026-03-24 13:16:04
EPSS
<0.1% probability · 6.3th percentile — 2026-03-31
Affected versions
cpe:2.3:a:mozilla:firefox:*:*:*:*:esr:*:*:*
cpe:2.3:a:mozilla:firefox:*:*:*:*:-:*:*:*
cpe:2.3:a:mozilla:firefox:*:*:*:*:esr:*:*:*
Summary
Sandbox escape due to incorrect boundary conditions in the Telemetry component. This vulnerability affects Firefox < 149, Firefox ESR < 115.34, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9.
Remediation
Not available in our cache.
Exploit info
Not available in our cache.
View on NVD
TopVuln sends digest emails with high-risk CVE picks across multiple authoritative sources—curated with EPSS and AI. Choose daily per-stream emails and optional weekly or monthly roundups.
Subscribe — free email digest or paid plan
Information is aggregated from multiple authoritative sources for convenience; verify with NVD and vendors before operational decisions.