{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata — refreshed continuously.","feed_url":"https://feed.craftedsignal.io/tags/cve-2026-4698/","home_page_url":"https://feed.craftedsignal.io/","items":[{"_cs_actors":[],"_cs_cves":[],"_cs_exploited":false,"_cs_products":[],"_cs_severities":["critical"],"_cs_tags":["firefox","thunderbird","jit","miscompilation","rce","cve-2026-4698","type-confusion"],"_cs_type":"advisory","_cs_vendors":[],"content_html":"\u003cp\u003eCVE-2026-4698 describes a JIT miscompilation vulnerability within the JavaScript engine\u0026rsquo;s JIT component in Mozilla Firefox and Thunderbird. Specifically, Firefox versions prior to 149, Firefox ESR versions less than 115.34 and 140.9, and Thunderbird versions before 149 and 140.9 are affected. This vulnerability stems from a type confusion issue (CWE-843) during JavaScript code compilation, which an attacker can exploit to potentially execute arbitrary code on a vulnerable system. Given the…\u003c/p\u003e\n","date_modified":"2026-03-24T13:16:05Z","date_published":"2026-03-24T13:16:05Z","id":"/briefs/2026-03-firefox-jit-miscompilation/","summary":"A critical JIT miscompilation vulnerability (CVE-2026-4698) in the JavaScript engine affects Firefox and Thunderbird, potentially leading to remote code execution.","title":"Firefox and Thunderbird JIT Miscompilation Vulnerability (CVE-2026-4698)","url":"https://feed.craftedsignal.io/briefs/2026-03-firefox-jit-miscompilation/"}],"language":"en","title":"CraftedSignal Threat Feed — Cve-2026-4698","version":"https://jsonfeed.org/version/1.1"}