Boundary Condition Vulnerability in Firefox and Mozilla’s Graphics: Canvas2D
CVE-2026-4706
7.5HIGH
What is CVE-2026-4706?
This vulnerability arises from improper boundary conditions within the Graphics: Canvas2D component of the Firefox web browser. Affected versions include Firefox prior to version 149 and both Firefox ESR versions 115.34 and 140.9. Attackers could exploit this vulnerability to induce unexpected behavior, potentially leading to security risks for users.
Affected Version(s)
Firefox < 149
Firefox ESR < 115.34
Firefox ESR < 140.9