
🚨 HIGH: CVE-2026-4707 (CVSS 7.5) - Boundary condition flaw in Firefox/Thunderbird Canvas2D component. Network-exploitable, no auth required. Patched in Firefox 149, ESR 115.34/140.9, Thunderbird 149/140.9. Update immediately. #CVE #PatchNow #ThreatIntel https://t.co/UTHhHobwqn
Post summary
The tweet highlights CVE-2026-4707, a boundary condition flaw in Firefox/Thunderbird's Canvas2D component that is network-exploitable without authentication, and urges immediate updates to patched versions.

