
CVE-2026-8971 Same-origin policy bypass in the Networking: JAR component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. https://www.cve.org/CVERecord?id=CVE-2026-8971
Post summary
The tweet announces CVE‑2026‑8971 – a same‑origin policy bypass in Mozilla’s networking JAR component – and notes the issue was fixed in Firefox 151 and Thunderbird 151; no PoC, exploit, or active‑use data are provided.
