Firefox Fixes Flaws That Risk Crashes, Code Execution
Mozilla patched two high-impact vulnerabilities in Firefox 139.0.4 that could lead to browser crashes or remote code execution. The flaws—CVE-2025-49709 and CVE-2025-49710—affect key components of the browser’s graphics rendering system and JavaScript engine. The first, CVE-2025-49709, involves memory corruption triggered by specific canvas operations. Improper handling of canvas surfaces could compromise memory integrity, enabling denial-of-service […]
