- Security updates have been released to address vulnerabilities in Mozilla products Firefox and Firefox ESR.
- affected Versions are as follows
- CVE-2026-7320, CVE-2026-7322: Firefox below 150.0.1, Firefox ESR below 140.10.1, Firefox ESR below 115.35.1.
- CVE-2026-7323: Firefox before 150.0.1, Firefox ESR before 140.10.1, Firefox ESR before 115.35.1.
- CVE-2026-7324: Firefox below 150.0.1.
- CVE-2026-7320 is an information disclosure vulnerability due to lack of boundary validation in the Audio/Video component.
- CVE-2026-7322, CVE-2026-7323, and CVE-2026-7324 are memory safety vulnerabilities.
- Mozilla advised users to update to the latest versions of Firefox 150.0.1, Firefox ESR 140.10.1, and Firefox ESR 115.35.1.
- mozilla Foundation Security Advisories 2026-35, 2026-36, and 2026-37 were cited as references.