
🚨 CRITICAL: CVE-2026-2779 (CVSS 9.8) Incorrect boundary conditions in Firefox/Thunderbird JAR component. Network exploitable, no user interaction required. Patched in Firefox 148, ESR 140.8, Thunderbird 148/140.8. #CVE #PatchNow https://t.co/FiuXkKY4DR
Post summary
The tweet announces CVE-2026-2779 as a critical vulnerability (CVSS 9.8) in Firefox/Thunderbird’s JAR component, notes it is network‑exploitable without user interaction, and states that patches are available in the latest releases.



