cbcvebase.

Mozilla Thunderbird vulnerabilities

2,009 known vulnerabilities affecting mozilla/thunderbird.

Total CVEs
2,009
CISA KEV
14
actively exploited
Public exploits
63
Exploited in wild
25
Severity breakdown
CRITICAL666HIGH636MEDIUM667LOW29UNKNOWN11

Vulnerabilities

Page 8 of 101
CVE-2026-2790P3CRITICALCVSS 9.8fixed in 140.8.0fixed in 148.02026-02-24
CVE-2026-2790 [CRITICAL] CWE-346 CVE-2026-2790: Same-origin policy bypass in the Networking: JAR component. This vulnerability was fixed in Firefox Same-origin policy bypass in the Networking: JAR component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
nvdosv
CVE-2026-16375P3CRITICALCVSS 9.8fixed in 140.13.0≥ 141.0, < 153.02026-07-21
CVE-2026-16375 [CRITICAL] CWE-346 CVE-2026-16375: Site isolation issue in the Networking: HTTP component. This vulnerability was fixed in Firefox 153, Site isolation issue in the Networking: HTTP component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
nvdmozilla
CVE-2026-16370P3CRITICALCVSS 9.1fixed in 153.02026-07-21
CVE-2026-16370 [CRITICAL] CWE-693 CVE-2026-16370: Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 153 and Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
nvdmozilla
CVE-2026-16380P3CRITICALCVSS 9.1fixed in 153.02026-07-21
CVE-2026-16380 [CRITICAL] CWE-693 CVE-2026-16380: Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153 and Thund Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.
nvdmozilla
CVE-2026-12316P3CRITICALCVSS 9.1fixed in Thunderbird 152
CVE-2026-12316 [CRITICAL] Mozilla Foundation Security Advisory 2026-60: CVE-2026-12316 Mozilla Foundation Security Advisory 2026-60 CVE: CVE-2026-12316 Product: Thunderbird Impact: high Fixed in: Thunderbird 152
mozilla
CVE-2026-16381P3CRITICALCVSS 9.1fixed in 140.13.0≥ 141.0, < 153.02026-07-21
CVE-2026-16381 [CRITICAL] CWE-346 CVE-2026-16381: Same-origin policy bypass in the Networking: DNS component. This vulnerability was fixed in Firefox Same-origin policy bypass in the Networking: DNS component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
nvdmozilla
CVE-2013-5618P3CRITICALCVSS 9.8fixed in 24.22013-12-11
CVE-2013-5618 [CRITICAL] CWE-416 CVE-2013-5618: Use-after-free vulnerability in the nsNodeUtils::LastRelease function in the table-editing user inte Use-after-free vulnerability in the nsNodeUtils::LastRelease function in the table-editing user interface in the editor component in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allows remote attackers to execute arbitrary code by triggering improper garbage collection.
nvd
CVE-2012-4202P3CRITICALCVSS 9.3fixed in 17.02012-11-21
CVE-2012-4202 [CRITICAL] CWE-787 CVE-2012-4202: Heap-based buffer overflow in the image::RasterImage::DrawFrameTo function in Mozilla Firefox before Heap-based buffer overflow in the image::RasterImage::DrawFrameTo function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code via a crafted GIF image.
nvd
CVE-2022-24713P3HIGHCVSS 7.5≥ 0, < 1:91.8.0-1~deb11u1≥ 0, < 1:91.8.0-12022-03-08
CVE-2022-24713 [HIGH] CVE-2022-24713: regex is an implementation of regular expressions for the Rust language regex is an implementation of regular expressions for the Rust language. The regex crate features built-in mitigations to prevent denial of service attacks caused by untrusted regexes, or untrusted input matched by trusted regexes. Those (tunable) mitigations already provide sane defaults to prevent attacks. This guarantee is documented and it's considered part of the crate's API. Unfort
osv
CVE-2012-3957P3CRITICALCVSS 10.0fixed in 15.02012-08-29
CVE-2012-3957 [CRITICAL] CWE-787 CVE-2012-3957: Heap-based buffer overflow in the nsBlockFrame::MarkLineDirty function in Mozilla Firefox before 15. Heap-based buffer overflow in the nsBlockFrame::MarkLineDirty function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey before 2.12 allows remote attackers to execute arbitrary code via unspecified vectors.
nvd
CVE-2021-30547P3HIGHCVSS 8.8≥ 0, < 1:78.12.0-12021-06-15
CVE-2021-30547 [HIGH] CVE-2021-30547: Out of bounds write in ANGLE in Google Chrome prior to 91 Out of bounds write in ANGLE in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.
osv
CVE-2026-4698P3CRITICALCVSS 9.8≥ 0, < 1:140.9.0esr-1~deb11u1≥ 0, < 1:140.9.0esr-1~deb12u1+2 more2026-03-24
CVE-2026-4698 [CRITICAL] CVE-2026-4698: JIT miscompilation in the JavaScript Engine: JIT component JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability affects Firefox < 149, Firefox ESR < 115.34, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9.
osv
CVE-2026-2773P3CRITICALCVSS 9.8fixed in 140.8.0fixed in 148.02026-02-24
CVE-2026-2773 [CRITICAL] CWE-119 CVE-2026-2773: Incorrect boundary conditions in the Web Audio component. This vulnerability was fixed in Firefox 14 Incorrect boundary conditions in the Web Audio component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
nvdosv
CVE-2026-2775P3CRITICALCVSS 9.8fixed in 140.8.0fixed in 148.02026-02-24
CVE-2026-2775 [CRITICAL] CWE-288 CVE-2026-2775: Mitigation bypass in the DOM: HTML Parser component. This vulnerability was fixed in Firefox 148, Fi Mitigation bypass in the DOM: HTML Parser component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
nvdosv
CVE-2024-9392P3CRITICALCVSS 9.8fixed in 128.3.0≥ 129.0, < 131.0+2 more2024-10-01
CVE-2024-9392 [CRITICAL] CWE-346 CVE-2024-9392: A compromised content process could have allowed for the arbitrary loading of cross-origin pages. Th A compromised content process could have allowed for the arbitrary loading of cross-origin pages. This vulnerability affects Firefox < 131, Firefox ESR < 128.3, Firefox ESR < 115.16, Thunderbird < 128.3, and Thunderbird < 131.
nvdosv
CVE-2026-2757P3CRITICALCVSS 9.8fixed in 140.8.0fixed in 148.02026-02-24
CVE-2026-2757 [CRITICAL] CWE-1384 CVE-2026-2757: Incorrect boundary conditions in the WebRTC: Audio/Video component. This vulnerability was fixed in Incorrect boundary conditions in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
nvdosv
CVE-2025-14324P3CRITICALCVSS 9.8fixed in 140.6.0fixed in 146.02025-12-09
CVE-2025-14324 [CRITICAL] CWE-94 CVE-2025-14324: JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 115.31, Firefox ESR 140.6, Thunderbird 146, and Thunderbird 140.6.
nvdosv
CVE-2026-4691P3CRITICALCVSS 9.8≥ 0, < 1:140.9.0esr-1~deb11u1≥ 0, < 1:140.9.0esr-1~deb12u1+2 more2026-03-24
CVE-2026-4691 [CRITICAL] CVE-2026-4691: Use-after-free in the CSS Parsing and Computation component Use-after-free in the CSS Parsing and Computation component. This vulnerability affects Firefox < 149, Firefox ESR < 115.34, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9.
osv
CVE-2026-4696P3CRITICALCVSS 9.8≥ 0, < 1:140.9.0esr-1~deb11u1≥ 0, < 1:140.9.0esr-1~deb12u1+2 more2026-03-24
CVE-2026-4696 [CRITICAL] CVE-2026-4696: Use-after-free in the Layout: Text and Fonts component Use-after-free in the Layout: Text and Fonts component. This vulnerability affects Firefox < 149, Firefox ESR < 115.34, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9.
osv
CVE-2026-2758P3CRITICALCVSS 9.8fixed in 140.8.0fixed in 148.02026-02-24
CVE-2026-2758 [CRITICAL] CWE-416 CVE-2026-2758: Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 148, Firefox Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.
nvdosv
Mozilla Thunderbird vulnerabilities | cvebase