CVE-2025-11719
published 2025-10-14CVE-2025-11719: Starting in Thunderbird 143, the use of the native messaging API by web extensions on Windows could lead to crashes caused by use-after-free memory corruption…
PriorityP349critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.33%
25.2th percentile
Starting in Thunderbird 143, the use of the native messaging API by web extensions on Windows could lead to crashes caused by use-after-free memory corruption. This vulnerability was fixed in Firefox 144 and Thunderbird 144.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | >= 143.0 < 144.0 | 144.0 |
| mozilla | thunderbird | >= 143.0 < 144.0 | 144.0 |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
osv9.8CRITICAL
vendor_debian9.8LOW
vendor_redhat9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
MCP Toolbox for Databases: authenticated authorization bypass
ghsa·2026-06-18
CVE-2026-11719 [HIGH] CWE-862 MCP Toolbox for Databases: authenticated authorization bypass
MCP Toolbox for Databases: authenticated authorization bypass
An authenticated authorization bypass vulnerability exists in MCP Toolbox for Databases due to missing scope enforcement across older protocol handlers.
While the 2025-11-25 protocol version handler correctly enforces per-tool restrictions defined by scopesRequired, older supported protocol versions (2025-06-18, 2025-03-26, and 2024-11-05) omit this check. An authenticated client with low-privilege tokens (e.g., read) can bypass the intended per-tool scope restrictions and execute high-privilege tools (e.g., admin) simply by specifying an older protocol version in the MCP-Protocol-Version header, or by omitting the header entirely (which causes the server to default to the vulnerable 2024-11-05 handler).
OSV
CVE-2025-11719: Starting in Thunderbird 143, the use of the native messaging API by web extensions on Windows could lead to crashes caused by use-after-free memory co
osv·2025-10-14·CVSS 9.8
CVE-2025-11719 [CRITICAL] CVE-2025-11719: Starting in Thunderbird 143, the use of the native messaging API by web extensions on Windows could lead to crashes caused by use-after-free memory co
Starting in Thunderbird 143, the use of the native messaging API by web extensions on Windows could lead to crashes caused by use-after-free memory corruption. This vulnerability affects Firefox < 144 and Thunderbird < 144.
GHSA
GHSA-wvmm-cxmc-39xj: Starting in Firefox 143, the use of the native messaging API by web extensions on Windows could lead to crashes caused by use-after-free memory corrup
ghsa_unreviewed·2025-10-14
CVE-2025-11719 [CRITICAL] CWE-416 GHSA-wvmm-cxmc-39xj: Starting in Firefox 143, the use of the native messaging API by web extensions on Windows could lead to crashes caused by use-after-free memory corrup
Starting in Firefox 143, the use of the native messaging API by web extensions on Windows could lead to crashes caused by use-after-free memory corruption. This vulnerability affects Firefox < 144 and Thunderbird < 144.
Red Hat
thunderbird: firefox: Use-after-free caused by the native messaging web extension API on Windows
vendor_redhat·2025-10-14·CVSS 9.8
CVE-2025-11719 [CRITICAL] thunderbird: firefox: Use-after-free caused by the native messaging web extension API on Windows
thunderbird: firefox: Use-after-free caused by the native messaging web extension API on Windows
Starting in Thunderbird 143, the use of the native messaging API by web extensions on Windows could lead to crashes caused by use-after-free memory corruption. This vulnerability affects Firefox < 144 and Thunderbird < 144.
A flaw was found in Thunderbird and Firefox. The Mozilla Foundation's Security Advisory describes the following issue:
Starting in Firefox 143, the use of the native messaging API by web extensions on Windows could lead to crashes caused by use-after-free memory corruption.
Statement: Red Hat Product Security rates the severity of this flaw as determined by the Mozilla Foundation Security Advisory.
Package: firefox (Red Hat Enterprise Linux 10) - Not affected
Package: r
Debian
CVE-2025-11719: firefox - Starting in Thunderbird 143, the use of the native messaging API by web extensio...
vendor_debian·2025·CVSS 9.8
CVE-2025-11719 [CRITICAL] CVE-2025-11719: firefox - Starting in Thunderbird 143, the use of the native messaging API by web extensio...
Starting in Thunderbird 143, the use of the native messaging API by web extensions on Windows could lead to crashes caused by use-after-free memory corruption. This vulnerability affects Firefox < 144 and Thunderbird < 144.
Scope: local
sid: resolved
Mozilla
Mozilla Foundation Security Advisory 2025-84: CVE-2025-11719
vendor_mozilla·CVSS 9.8
CVE-2025-11719 [CRITICAL] Mozilla Foundation Security Advisory 2025-84: CVE-2025-11719
Mozilla Foundation Security Advisory 2025-84
CVE: CVE-2025-11719
Product: Thunderbird
Impact: high
Fixed in: Thunderbird 144
Mozilla
Mozilla Foundation Security Advisory 2025-81: CVE-2025-11719
vendor_mozilla·CVSS 9.8
CVE-2025-11719 [CRITICAL] Mozilla Foundation Security Advisory 2025-81: CVE-2025-11719
Mozilla Foundation Security Advisory 2025-81
CVE: CVE-2025-11719
Product: Firefox
Impact: high
Fixed in: Firefox 144
No detection rules found.
No public exploits indexed.
2025-10-14
Published