CVE-2026-7321Patch(mozilla / firefox)

LOWCVSS 9.6 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch mozilla firefox systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Sandbox escape due to incorrect boundary conditions in the WebRTC: Networking component. This vulnerability was fixed in Firefox 150, Thunderbird 150, Firefox ESR 140.10.1, and Thunderbird 140.10.1.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-120

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • firefox
  • thunderbird

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 4 signals
  • General: 2 classified signals
  • Disclosure: 1 classified signal
  • Peaked 2d ago at 2 mentions (2026-04-29); latest day: 1
  • 5 total mentions across 4 days

Affected systems

Vendors
Products
firefoxthunderbird

Deep dive

Activity timeline5 mentions / 4d
01122Mentions · 2026-04-28: 1Mentions · 2026-04-29: 2Mentions · 2026-05-04: 1Mentions · 2026-05-05: 1Patch / Workaround · 2026-04-29: 2Technical Details · 2026-04-28: 1Technical Details · 2026-04-29: 2Technical Details · 2026-05-05: 104-2804-2905-0405-05
Signal classification3 categories
Patch
240.0%
General
240.0%
Disclosure
120.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-04-281
Disclosure1
2026-04-292
Patch2
2026-05-041
General1
2026-05-051
General1
Full discourse5 posts
  • CVE@CVEnew
    Patch

    CVE-2026-7321 Sandbox escape due to incorrect boundary conditions in the WebRTC: Networking component. This vulnerability was fixed in Firefox 150, Thunderbird 150, and Firefox ESR 1… https://www.cve.org/CVERecord?id=CVE-2026-7321

    Post summary

    CVE-2026-7321 is a sandbox escape in the WebRTC networking component, and the issue has been fixed in Firefox 150, Thunderbird 150, and Firefox ESR.

    00010175
    57.3K followersView on X
  • IntegSec@integ_sec
    General

    CVE-2026-7321: Sandbox Escape in Mozilla Firefox WebRTC Networking - What It Means for Your Business and How to Respond https://hubs.li/Q04fsrBp0

    Post summary

    The article alerts readers to a sandbox escape vulnerability affecting Firefox’s WebRTC networking component and suggests business responses, but it does not provide PoC details, exploit code, or specific patches.

    0000046
    29 followersView on X
  • CERT-PY@CERTpy
    General

    ⚠️ Vulnerabilidades en productos Mozilla ❗ CVE-2026-7324 ❗ CVE-2026-7321 ❗ CVE-2026-7320 ➡️ Más info: https://www.cert.gov.py/vulnerabilidades-en-productos-mozilla-10/ https://t.co/ihwIeaAKIl

    Post summary

    The post announces three Mozilla product CVEs and directs readers to external links for additional information, but provides no details on patches, exploits, or vulnerability specifics.

    00000126
    6.7K followersView on X
  • Infoflowcloud@infoflowcloud
    Patch

    🚨*CVE* CVE-2026-7321 Sandbox escape due to incorrect boundary conditions in the WebRTC: Networking component. This vulnerability was fixed in Firefox 150, Thunderbird 150, and Firefox ESR 1… https://www.cve.org/CVERecord?id=CVE-2026-7321 ----- Traducción: CVE-2026-7321 Esc… http://infoflow.cloud`

    Post summary

    The tweet announces CVE‑2026‑7321, describes a sandbox escape in WebRTC, and notes that the issue has been patched in recent Firefox versions.

    0000033
    74 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-7321 Sandbox Escape in Firefox WebRTC Networking Component ESR 140.10.1 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7321

    Post summary

    CVE-2026-7321 is a sandbox escape vulnerability affecting Firefox's WebRTC networking component in ESR 140.10.1, with details available on a vulnerability database page.

    0000042
    4.0K followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
Appmozillafirefox---
Appmozillafirefox---
Appmozillathunderbird---
Appmozillathunderbird---

Explore more