cbcvebase.

Mozilla Thunderbird vulnerabilities

2,009 known vulnerabilities affecting mozilla/thunderbird.

Total CVEs
2,009
CISA KEV
14
actively exploited
Public exploits
63
Exploited in wild
25
Severity breakdown
CRITICAL666HIGH636MEDIUM667LOW29UNKNOWN11

Vulnerabilities

Page 76 of 101
CVE-2023-1945P4MEDIUMCVSS 6.5fixed in 102.10≥ unspecified, < 102.102023-06-02
CVE-2023-1945 [MEDIUM] CWE-787 CVE-2023-1945: Unexpected data returned from the Safe Browsing API could have led to memory corruption and a potent Unexpected data returned from the Safe Browsing API could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 102.10 and Firefox ESR < 102.10.
nvdosv
CVE-2023-25738P4MEDIUMCVSS 6.5fixed in 102.8≥ unspecified, < 102.82023-06-02
CVE-2023-25738 [MEDIUM] CWE-125 CVE-2023-25738: Members of the <code>DEVMODEW</code> struct set by the printer device driver weren't being validated Members of the DEVMODEW struct set by the printer device driver weren't being validated and could have resulted in invalid values which in turn would cause the browser to attempt out of bounds access to related variables.*This bug only affects Firefox on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox < 110, Thu
nvd
CVE-2022-29914P4MEDIUMCVSS 6.5fixed in 91.9≥ unspecified, < 91.92022-12-22
CVE-2022-29914 [MEDIUM] CWE-1021 CVE-2022-29914: When reusing existing popups Firefox would have allowed them to cover the fullscreen notification UI When reusing existing popups Firefox would have allowed them to cover the fullscreen notification UI, which could have enabled browser spoofing attacks. This vulnerability affects Thunderbird < 91.9, Firefox ESR < 91.9, and Firefox < 100.
nvdosv
CVE-2022-31742P4MEDIUMCVSS 6.5fixed in 91.10≥ unspecified, < 91.102022-12-22
CVE-2022-31742 [MEDIUM] CWE-203 CVE-2022-31742: An attacker could have exploited a timing attack by sending a large number of allowCredential entrie An attacker could have exploited a timing attack by sending a large number of allowCredential entries and detecting the difference between invalid key handles and cross-origin key handles. This could have led to cross-origin account linking in violation of WebAuthn goals. This vulnerability affects Thunderbird < 91.10, Firefox < 101, and Firefox ESR
nvdosv
CVE-2022-31738P4MEDIUMCVSS 6.5fixed in 91.10≥ unspecified, < 91.102022-12-22
CVE-2022-31738 [MEDIUM] CWE-290 CVE-2022-31738: When exiting fullscreen mode, an iframe could have confused the browser about the current state of f When exiting fullscreen mode, an iframe could have confused the browser about the current state of fullscreen, resulting in potential user confusion or spoofing attacks. This vulnerability affects Thunderbird < 91.10, Firefox < 101, and Firefox ESR < 91.10.
nvdosv
CVE-2023-0616P4MEDIUMCVSS 6.5fixed in 102.8≥ unspecified, < 102.82023-06-02
CVE-2023-0616 [MEDIUM] CWE-400 CVE-2023-0616: If a MIME email combines OpenPGP and OpenPGP MIME data in a certain way Thunderbird repeatedly attem If a MIME email combines OpenPGP and OpenPGP MIME data in a certain way Thunderbird repeatedly attempts to process and display the message, which could cause Thunderbird's user interface to lock up and no longer respond to the user's actions. An attacker could send a crafted message with this structure to attempt a DoS attack. This vulnerability affec
nvdosv
CVE-2022-29913P4MEDIUMCVSS 6.5fixed in 91.9≥ unspecified, < 91.92022-12-22
CVE-2022-29913 [MEDIUM] CWE-285 CVE-2022-29913: The parent process would not properly check whether the Speech Synthesis feature is enabled, when re The parent process would not properly check whether the Speech Synthesis feature is enabled, when receiving instructions from a child process. This vulnerability affects Thunderbird < 91.9.
nvdosv
CVE-2023-4580P4MEDIUMCVSS 6.5fixed in 115.2≥ unspecified, < 115.22023-09-11
CVE-2023-4580 [MEDIUM] CWE-311 CVE-2023-4580: Push notifications stored on disk in private browsing mode were not being encrypted potentially allo Push notifications stored on disk in private browsing mode were not being encrypted potentially allowing the leak of sensitive information. This vulnerability affects Firefox < 117, Firefox ESR < 115.2, and Thunderbird < 115.2.
nvdosv
CVE-2022-2226P4MEDIUMCVSS 6.5fixed in 91.11v101.0+2 more2022-12-22
CVE-2022-2226 [MEDIUM] CWE-294 CVE-2022-2226: An OpenPGP digital signature includes information about the date when the signature was created. Whe An OpenPGP digital signature includes information about the date when the signature was created. When displaying an email that contains a digital signature, the email's date will be shown. If the dates were different, then Thunderbird didn't report the email as having an invalid signature. If an attacker performed a replay attack, in which an old emai
nvdosv
CVE-2023-0547P4MEDIUMCVSS 6.5≥ 68.0, < 102.10≥ unspecified, < 102.102023-06-02
CVE-2023-0547 [MEDIUM] CWE-295 CVE-2023-0547: OCSP revocation status of recipient certificates was not checked when sending S/Mime encrypted email OCSP revocation status of recipient certificates was not checked when sending S/Mime encrypted email, and revoked certificates would be accepted. Thunderbird versions from 68 to 102.9.1 were affected by this bug. This vulnerability affects Thunderbird < 102.10.
nvdosv
CVE-2023-0430P4MEDIUMCVSS 6.5≥ 68.0, < 102.7.1≥ unspecified, < 102.7.12023-06-02
CVE-2023-0430 [MEDIUM] CWE-295 CVE-2023-0430: Certificate OCSP revocation status was not checked when verifying S/Mime signatures. Mail signed wit Certificate OCSP revocation status was not checked when verifying S/Mime signatures. Mail signed with a revoked certificate would be displayed as having a valid signature. Thunderbird versions from 68 to 102.7.0 were affected by this bug. This vulnerability affects Thunderbird < 102.7.1.
nvdosv
CVE-2025-8027P4MEDIUMCVSS 6.5fixed in 128.13.0fixed in 141.0+1 more2025-07-22
CVE-2025-8027 [MEDIUM] CWE-457 CVE-2025-8027: On 64-bit platforms IonMonkey-JIT only wrote 32 bits of the 64-bit return value space on the stack. On 64-bit platforms IonMonkey-JIT only wrote 32 bits of the 64-bit return value space on the stack. Baseline-JIT, however, read the entire 64 bits. This vulnerability was fixed in Firefox 141, Firefox ESR 115.26, Firefox ESR 128.13, Firefox ESR 140.1, Thunderbird 141, Thunderbird 128.13, and Thunderbird 140.1.
nvdosv
CVE-2023-28164P4MEDIUMCVSS 6.5fixed in 102.9≥ unspecified, < 102.92023-06-02
CVE-2023-28164 [MEDIUM] CWE-346 CVE-2023-28164: Dragging a URL from a cross-origin iframe that was removed during the drag could have led to user co Dragging a URL from a cross-origin iframe that was removed during the drag could have led to user confusion and website spoofing attacks. This vulnerability affects Firefox < 111, Firefox ESR < 102.9, and Thunderbird < 102.9.
nvdosv
CVE-2024-8394P4MEDIUMCVSS 6.5fixed in 128.2.0≥ unspecified, < 128.22024-09-06
CVE-2024-8394 [MEDIUM] CWE-416 CVE-2024-8394: When aborting the verification of an OTR chat session, an attacker could have caused a use-after-fre When aborting the verification of an OTR chat session, an attacker could have caused a use-after-free bug leading to a potentially exploitable crash. This vulnerability affects Thunderbird < 128.2.
nvdosv
CVE-2026-3889P4MEDIUMCVSS 6.5fixed in 140.9.0fixed in 149.02026-03-24
CVE-2026-3889 [MEDIUM] CWE-451 CVE-2026-3889: Spoofing issue in Thunderbird. This vulnerability was fixed in Thunderbird 149 and Thunderbird 140.9 Spoofing issue in Thunderbird. This vulnerability was fixed in Thunderbird 149 and Thunderbird 140.9.
nvdosv
CVE-2004-0764P4CRITICALCVSS 10.0≤ 0.72004-08-18
CVE-2004-0764 [CRITICAL] CVE-2004-0764: Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, allow remote web sites to hijack Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, allow remote web sites to hijack the user interface via the "chrome" flag and XML User Interface Language (XUL) files.
nvd
CVE-2024-2610P4MEDIUMCVSS 6.1fixed in 115.9.0≥ unspecified, < 115.92024-03-19
CVE-2024-2610 [MEDIUM] CWE-94 CVE-2024-2610: Using a markup injection an attacker could have stolen nonce values. This could have been used to by Using a markup injection an attacker could have stolen nonce values. This could have been used to bypass strict content security policies. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.
nvdosv
CVE-2024-9397P4MEDIUMCVSS 6.1fixed in 128.3v129.0+2 more2024-10-01
CVE-2024-9397 [MEDIUM] CWE-1021 CVE-2024-9397: A missing delay in directory upload UI could have made it possible for an attacker to trick a user i A missing delay in directory upload UI could have made it possible for an attacker to trick a user into granting permission via clickjacking. This vulnerability affects Firefox < 131, Firefox ESR < 128.3, Thunderbird < 128.3, and Thunderbird < 131.
nvdosv
CVE-2024-3859P4MEDIUMCVSS 5.9fixed in 115.10≥ unspecified, < 115.102024-04-16
CVE-2024-3859 [MEDIUM] CWE-125 CVE-2024-3859: On 32-bit versions there were integer-overflows that led to an out-of-bounds-read that potentially c On 32-bit versions there were integer-overflows that led to an out-of-bounds-read that potentially could be triggered by a malformed OpenType font. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 115.10.
nvdosv
CVE-2018-18509P4MEDIUMCVSS 5.3fixed in 60.5.1≥ unspecified, < 60.5.12019-04-26
CVE-2018-18509 [MEDIUM] CWE-347 CVE-2018-18509: A flaw during verification of certain S/MIME signatures causes emails to be shown in Thunderbird as A flaw during verification of certain S/MIME signatures causes emails to be shown in Thunderbird as having a valid digital signature, even if the shown message contents aren't covered by the signature. The flaw allows an attacker to reuse a valid S/MIME signature to craft an email message with arbitrary content. This vulnerability affects Thunderbird
nvdosv
Mozilla Thunderbird vulnerabilities | cvebase