By encoding Unicode whitespace characters within the From email header, an attacker can spoof the sender email address that Thunderbird displays. This vulnerability affects Thunderbird < 68.8.0.
https://www.mozilla.org/security/advisories/mfsa2020-18/
https://usn.ubuntu.com/4373-1/