A vulnerability labeled as critical has been found in Mozilla Firefox up to 149. This impacts an unknown function of the component NSS. Such manipulation leads to Remote Code Execution.
This vulnerability is documented as CVE-2026-6767. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.