cbcvebase.

Mozilla Thunderbird vulnerabilities

2,009 known vulnerabilities affecting mozilla/thunderbird.

Total CVEs
2,009
CISA KEV
14
actively exploited
Public exploits
63
Exploited in wild
25
Severity breakdown
CRITICAL666HIGH636MEDIUM667LOW29UNKNOWN11

Vulnerabilities

Page 1 of 101
CVE-2023-4863P1HIGHCVSS 8.8KEVPoCfixed in 102.15.1≥ 115.0, < 115.2.22023-09-12
CVE-2023-4863 [HIGH] CWE-787 CVE-2023-4863: Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Critical)
nvdosv
CVE-2010-3765P1CRITICALCVSS 9.8KEVPoCv3.0.1v3.0.2+12 more2010-10-28
CVE-2010-3765 [CRITICAL] CWE-119 CVE-2010-3765: Mozilla Firefox 3.5.x through 3.5.14 and 3.6.x through 3.6.11, Thunderbird 3.1.6 before 3.1.6 and 3. Mozilla Firefox 3.5.x through 3.5.14 and 3.6.x through 3.6.11, Thunderbird 3.1.6 before 3.1.6 and 3.0.x before 3.0.10, and SeaMonkey 2.x before 2.0.10, when JavaScript is enabled, allows remote attackers to execute arbitrary code via vectors related to nsCSSFrameConstructor::ContentAppended, the appendChild method, incorrect index tracking, and the
nvd
CVE-2016-9079P1HIGHCVSS 7.5KEVPoCfixed in 45.5.1≥ unspecified, < 45.5.12018-06-11
CVE-2016-9079 [HIGH] CWE-416 CVE-2016-9079: A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulner A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulnerability has been discovered in the wild targeting Firefox and Tor Browser users on Windows. This vulnerability affects Firefox < 50.0.2, Firefox ESR < 45.5.1, and Thunderbird < 45.5.1.
nvd
CVE-2019-11708P1CRITICALCVSS 10.0KEVPoCfixed in 60.7.2≥ unspecified, < 60.7.22019-07-23
CVE-2019-11708 [CRITICAL] CWE-20 CVE-2019-11708: Insufficient vetting of parameters passed with the Prompt:Open IPC message between child and parent Insufficient vetting of parameters passed with the Prompt:Open IPC message between child and parent processes can result in the non-sandboxed parent process opening web content chosen by a compromised child process. When combined with additional vulnerabilities this could result in executing arbitrary code on the user's computer. This vulnerability
nvdosv
CVE-2023-5217P1HIGHCVSS 8.8KEVPoCfixed in 115.3.12023-09-28
CVE-2023-5217 [HIGH] CWE-787 CVE-2023-5217: Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1 Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
nvdosv
CVE-2013-1690P1HIGHCVSS 8.8KEVPoCfixed in 17.0.72013-06-26
CVE-2013-1690 [HIGH] CWE-119 CVE-2013-1690: Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderb Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 do not properly handle onreadystatechange events in conjunction with page reloading, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted web site that t
nvd
CVE-2019-17026P1HIGHCVSS 8.8KEVPoCfixed in 68.4.1≥ unspecified, < 68.4.12020-03-02
CVE-2019-17026 [HIGH] CWE-843 CVE-2019-17026: Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a typ Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a type confusion. We are aware of targeted attacks in the wild abusing this flaw. This vulnerability affects Firefox ESR < 68.4.1, Thunderbird < 68.4.1, and Firefox < 72.0.1.
nvdosv
CVE-2019-11707P1HIGHCVSS 8.8KEVPoCfixed in 60.7.2≥ unspecified, < 60.7.22019-07-23
CVE-2019-11707 [HIGH] CWE-843 CVE-2019-11707: A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This can allow for an exploitable crash. We are aware of targeted attacks in the wild abusing this flaw. This vulnerability affects Firefox ESR < 60.7.1, Firefox < 67.0.3, and Thunderbird < 60.7.2.
nvdosv
CVE-2022-26485P1HIGHCVSS 8.8KEVPoCfixed in 91.6.2≥ unspecified, < 91.6.22022-12-22
CVE-2022-26485 [HIGH] CWE-416 CVE-2022-26485: Removing an XSLT parameter during processing could have lead to an exploitable use-after-free. We ha Removing an XSLT parameter during processing could have lead to an exploitable use-after-free. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.6.1, Firefox for Android < 97.3.0, Thunderbird < 91.6.2, and Focus < 97.3.0.
nvdosv
CVE-2024-9680P1CRITICALCVSS 9.8KEVRansomwarefixed in 115.16.0≥ 128.0.1, < 128.3.1+4 more2024-10-09
CVE-2024-9680 [CRITICAL] CWE-416 CVE-2024-9680: An attacker was able to achieve code execution in the content process by exploiting a use-after-free An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animation timelines. We have had reports of this vulnerability being exploited in the wild. This vulnerability affects Firefox < 131.0.2, Firefox ESR < 128.3.1, Firefox ESR < 115.16.1, Thunderbird < 131.0.1, Thunderbird < 128.3.1, and Thunderbird
nvdosv
CVE-2022-26486P1CRITICALCVSS 9.6KEVfixed in 91.6.2≥ unspecified, < 91.6.22022-12-22
CVE-2022-26486 [CRITICAL] CWE-416 CVE-2022-26486: An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable san An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable sandbox escape. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.6.1, Firefox for Android < 97.3.0, Thunderbird < 91.6.2, and Focus < 97.3.0.
nvdosv
CVE-2020-6820P1HIGHCVSS 8.1KEVfixed in 68.7.0≥ unspecified, < 68.7.02020-04-24
CVE-2020-6820 [HIGH] CWE-362 CVE-2020-6820: Under certain conditions, when handling a ReadableStream, a race condition can cause a use-after-fre Under certain conditions, when handling a ReadableStream, a race condition can cause a use-after-free. We are aware of targeted attacks in the wild abusing this flaw. This vulnerability affects Thunderbird < 68.7.0, Firefox < 74.0.1, and Firefox ESR < 68.6.1.
nvdosv
CVE-2020-6819P1HIGHCVSS 8.1KEVfixed in 68.7.0≥ unspecified, < 68.7.02020-04-24
CVE-2020-6819 [HIGH] CWE-362 CVE-2020-6819: Under certain conditions, when running the nsDocShell destructor, a race condition can cause a use-a Under certain conditions, when running the nsDocShell destructor, a race condition can cause a use-after-free. We are aware of targeted attacks in the wild abusing this flaw. This vulnerability affects Thunderbird < 68.7.0, Firefox < 74.0.1, and Firefox ESR < 68.6.1.
nvdosv
CVE-2013-1675P2MEDIUMCVSS 6.5KEVfixed in 17.0.62013-05-16
CVE-2013-1675 [MEDIUM] CWE-665 CVE-2013-1675: Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderb Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 do not properly initialize data structures for the nsDOMSVGZoomEvent::mPreviousScale and nsDOMSVGZoomEvent::mNewScale functions, which allows remote attackers to obtain sensitive information from process memory via a crafted w
nvd
CVE-2014-1510P1CRITICALCVSS 9.8ExploitedPoCfixed in 24.42014-03-19
CVE-2014-1510 [CRITICAL] CWE-269 CVE-2014-1510: The Web IDL implementation in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird The Web IDL implementation in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to execute arbitrary JavaScript code with chrome privileges by using an IDL fragment to trigger a window.open call.
nvd
CVE-2014-1511P1CRITICALCVSS 9.8ExploitedPoCfixed in 24.42014-03-19
CVE-2014-1511 [CRITICAL] CWE-269 CVE-2014-1511: Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey be Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allow remote attackers to bypass the popup blocker via unspecified vectors.
nvd
CVE-2019-9810P1HIGHCVSS 8.8ExploitedPoCfixed in 60.6.1≥ unspecified, < 60.6.12019-04-26
CVE-2019-9810 [HIGH] CWE-119 CVE-2019-9810: Incorrect alias information in IonMonkey JIT compiler for Array.prototype.slice method may lead to m Incorrect alias information in IonMonkey JIT compiler for Array.prototype.slice method may lead to missing bounds check and a buffer overflow. This vulnerability affects Firefox < 66.0.1, Firefox ESR < 60.6.1, and Thunderbird < 60.6.1.
nvd
CVE-2022-1802P1HIGHCVSS 8.8ExploitedPoCfixed in 91.9.1≥ unspecified, < 91.9.12022-12-22
CVE-2022-1802 [HIGH] CWE-1321 CVE-2022-1802: If an attacker was able to corrupt the methods of an Array object in JavaScript via prototype pollut If an attacker was able to corrupt the methods of an Array object in JavaScript via prototype pollution, they could have achieved execution of attacker-controlled JavaScript code in a privileged context. This vulnerability affects Firefox ESR < 91.9.1, Firefox < 100.0.2, Firefox for Android < 100.3.0, and Thunderbird < 91.9.1.
nvdosv
CVE-2013-1710P2CRITICALCVSS 10.0ExploitedPoC≤ 17.0.7v17.0+6 more2013-08-07
CVE-2013-1710 [CRITICAL] CWE-20 CVE-2013-1710: The crypto.generateCRMFRequest function in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0 The crypto.generateCRMFRequest function in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, Thunderbird ESR 17.x before 17.0.8, and SeaMonkey before 2.20 allows remote attackers to execute arbitrary JavaScript code or conduct cross-site scripting (XSS) attacks via vectors related to Certificate Request Message F
nvd
CVE-2022-28281P2HIGHCVSS 8.8ExploitedPoCfixed in 91.8≥ unspecified, < 91.82022-12-22
CVE-2022-28281 [HIGH] CWE-787 CVE-2022-28281: If a compromised content process sent an unexpected number of WebAuthN Extensions in a Register comm If a compromised content process sent an unexpected number of WebAuthN Extensions in a Register command to the parent process, an out of bounds write would have occurred leading to memory corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 91.8, Firefox < 99, and Firefox ESR < 91.8.
nvdosv
1 / 101Next →
Mozilla Thunderbird vulnerabilities | cvebase