Same-origin policy bypass in the Networking: JAR component. This vulnerability was fixed in Firefox 151 and Thunderbird 151.CreditsSurya Dev SinghReferenceshttps://bugzilla.mozilla.org/show_bug.cgi?id=2032604https://www.mozilla.org/security/advisories/mfsa2026-46/https://www.mozilla.org/security/advisories/mfsa2026-50/