maruomosquit[verified]@maru1151157Disclosure
A critical use‑after‑free vulnerability (CVE‑2026‑4725) in Firefox and Thunderbird’s Canvas2D component has been disclosed, and users are advised to upgrade to version 149 or newer.
The Hacker Wire@TheHackerWireDisclosure
CVE-2026-4725 is a newly disclosed critical vulnerability causing a sandbox escape via a use‑after‑free in Firefox and Thunderbird’s Canvas2D component for versions prior to 149.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
This brief notice announces CVE-2026-4725, a Use-After-Free sandbox escape in Firefox Canvas2D before version 149, without references to PoC, exploit code, or mitigation.
CVE@CVEnewDisclosure
The text announces CVE‑2026‑4725, describing a sandbox escape via use‑after‑free in Firefox’s Canvas2D component, with no PoC, exploit, active exploitation, or patch information provided.