PT-2026-38429 · Mozilla+1 · Firefox Esr+3

CVE-2026-8091

·

Published

2026-04-21

·

Updated

2026-07-22

CVSS v3.1

9.6

Critical

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Firefox versions prior to 150 Thunderbird versions prior to 150 Firefox ESR versions prior to 140.10.2 Firefox ESR versions prior to 115.35.2
Description Incorrect boundary conditions exist in the Audio/Video: Playback component.
Recommendations Update to version 150 for Firefox. Update to version 150 for Thunderbird. Update to version 140.10.2 for Firefox ESR. Update to version 115.35.2 for Firefox ESR.

Fix

DoS

Improper Check for Exceptional Conditions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-09764
CVE-2026-8091
OESA-2026-2272
OESA-2026-2273
OESA-2026-2274
OESA-2026-2275
OPENSUSE-SU-2026:10720-1
RHSA-2026:26174
RHSA-2026:26268
RHSA-2026:26269
RHSA-2026:26270
RHSA-2026:26491
RHSA-2026:26492
RHSA-2026:26493
RHSA-2026:26521
RHSA-2026:26536
RHSA-2026:26539
RHSA-2026:26551
RHSA-2026:26606
RHSA-2026:26629
RHSA-2026:26630
RHSA-2026:27715

Affected Products

Firefox
Firefox Esr
Red Os
Thunderbird