
Mozilla Firefox/Thunderbird are affected by CVE-2026-4688 (CVSS 10 - Critical), a sandbox escape via use-after-free in Disability Access APIs. It affects Firefox below 149, ESR below 140.9 & Thunderbird below 149 & ESR below 140.9. Update now. Read on: https://ow.ly/fzb050YBb0k https://t.co/R9aeBD9LHB
Post summary
CVE‑2026‑4688 is a critical sandbox escape vulnerability affecting Firefox/Thunderbird versions below 149/140.9, and users are urged to update immediately.




