cbcvebase.

Mozilla Thunderbird vulnerabilities

2,009 known vulnerabilities affecting mozilla/thunderbird.

Total CVEs
2,009
CISA KEV
14
actively exploited
Public exploits
63
Exploited in wild
25
Severity breakdown
CRITICAL666HIGH636MEDIUM667LOW29UNKNOWN11

Vulnerabilities

Page 85 of 101
CVE-2026-12330P4MEDIUMCVSS 5.4≥ 140.0, < 140.12.02026-06-16
CVE-2026-12330 [MEDIUM] CWE-119 CVE-2026-12330: Incorrect boundary conditions in the Internationalization component. This vulnerability was fixed in Incorrect boundary conditions in the Internationalization component. This vulnerability was fixed in Firefox ESR 140.12, Firefox ESR 115.37, and Thunderbird 140.12.
nvdmozilla
CVE-2026-6778P4MEDIUMCVSS 5.3fixed in 150.02026-04-21
CVE-2026-6778 [MEDIUM] CWE-476 CVE-2026-6778: Invalid pointer in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150 Invalid pointer in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.
nvdmozilla
CVE-2026-12300P4MEDIUMCVSS 5.3fixed in Thunderbird 152
CVE-2026-12300 [MEDIUM] Mozilla Foundation Security Advisory 2026-60: CVE-2026-12300 Mozilla Foundation Security Advisory 2026-60 CVE: CVE-2026-12300 Product: Thunderbird Impact: high Fixed in: Thunderbird 152
mozilla
CVE-2026-12301P4MEDIUMCVSS 5.3fixed in Thunderbird 152
CVE-2026-12301 [MEDIUM] Mozilla Foundation Security Advisory 2026-60: CVE-2026-12301 Mozilla Foundation Security Advisory 2026-60 CVE: CVE-2026-12301 Product: Thunderbird Impact: high Fixed in: Thunderbird 152
mozilla
CVE-2026-6783P4MEDIUMCVSS 5.3fixed in 150.02026-04-21
CVE-2026-6783 [MEDIUM] CWE-190 CVE-2026-6783: Incorrect boundary conditions, integer overflow in the Audio/Video: Playback component. This vulnera Incorrect boundary conditions, integer overflow in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.
nvdmozilla
CVE-2026-6775P4MEDIUMCVSS 5.3fixed in 150.02026-04-21
CVE-2026-6775 [MEDIUM] CWE-119 CVE-2026-6775: Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150 a Incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.
nvdmozilla
CVE-2026-6779P4MEDIUMCVSS 5.3fixed in 150.02026-04-21
CVE-2026-6779 [MEDIUM] CWE-20 CVE-2026-6779: Other issue in the JavaScript Engine component. This vulnerability was fixed in Firefox 150 and Thun Other issue in the JavaScript Engine component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.
nvdmozilla
CVE-2014-1577P4MEDIUMCVSS 6.4v31.0v31.1.02014-10-15
CVE-2014-1577 [MEDIUM] CVE-2014-1577: The mozilla::dom::OscillatorNodeEngine::ComputeCustom function in the Web Audio subsystem in Mozilla The mozilla::dom::OscillatorNodeEngine::ComputeCustom function in the Web Audio subsystem in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read, memory corruption, and application crash) via an i
nvdosv
CVE-2011-3062P4MEDIUMCVSS 6.8fixed in 12.02012-03-30
CVE-2011-3062 [MEDIUM] CWE-682 CVE-2011-3062: Off-by-one error in the OpenType Sanitizer in Google Chrome before 18.0.1025.142 allows remote attac Off-by-one error in the OpenType Sanitizer in Google Chrome before 18.0.1025.142 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted OpenType file.
nvd
CVE-2012-1942P4HIGHCVSS 7.2v12.02012-06-05
CVE-2012-1942 [HIGH] CWE-264 CVE-2012-1942: The Mozilla Updater and Windows Updater Service in Mozilla Firefox 12.0, Thunderbird 12.0, and SeaMo The Mozilla Updater and Windows Updater Service in Mozilla Firefox 12.0, Thunderbird 12.0, and SeaMonkey 2.9 on Windows allow local users to gain privileges by loading a DLL file in a privileged context.
nvd
CVE-2016-9895P4MEDIUMCVSS 6.1fixed in 45.6.0≥ unspecified, < 45.62018-06-11
CVE-2016-9895 [MEDIUM] CWE-254 CVE-2016-9895: Event handlers on "marquee" elements were executed despite a strict Content Security Policy (CSP) th Event handlers on "marquee" elements were executed despite a strict Content Security Policy (CSP) that disallowed inline JavaScript. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.
nvd
CVE-2017-5466P4MEDIUMCVSS 6.1fixed in 52.1.0≥ unspecified, < 52.12018-06-11
CVE-2017-5466 [MEDIUM] CWE-79 CVE-2017-5466: If a page is loaded from an original site through a hyperlink and contains a redirect to a "data:tex If a page is loaded from an original site through a hyperlink and contains a redirect to a "data:text/html" URL, triggering a reload will run the reloaded "data:text/html" page with its origin set incorrectly. This allows for a cross-site scripting (XSS) attack. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 52.1, and Firefox < 53.
nvdosv
CVE-2019-11744P4MEDIUMCVSS 6.1fixed in 60.9≥ 68.0, < 68.1+2 more2019-09-27
CVE-2019-11744 [MEDIUM] CWE-79 CVE-2019-11744: Some HTML elements, such as &lt;title&gt; and &lt;textarea&gt;, can contain literal angle brackets w Some HTML elements, such as and , can contain literal angle brackets without treating them as markup. It is possible to pass a literal closing tag to .innerHTML on these elements, and subsequent content after that will be parsed as if it were outside the tag. This can lead to XSS if a site does not filter user input as strictly for these elements as
nvdosv
CVE-2008-5507P4MEDIUMCVSS 6.0≥ 2.0, < 2.0.0.192008-12-17
CVE-2008-5507 [MEDIUM] CWE-200 CVE-2008-5507: Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird 2.x before 2.0.0.19, and SeaMo Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 allow remote attackers to bypass the same origin policy and access portions of data from another domain via a JavaScript URL that redirects to the target resource, which generates an error if the target data does not have JavaScri
nvd
CVE-2006-0296P4MEDIUMCVSS 5.0≥ 0, < 1.5.0.2-12006-02-02
CVE-2006-0296 [MEDIUM] CVE-2006-0296: The XULDocument The XULDocument.persist function in Mozilla, Firefox before 1.5.0.1, and SeaMonkey before 1.0 does not validate the attribute name, which allows remote attackers to execute arbitrary Javascript by injecting RDF data into the user's localstore.rdf file.
osv
CVE-2021-43543P4MEDIUMCVSS 6.1fixed in 91.4.0≥ unspecified, < 91.4.02021-12-08
CVE-2021-43543 [MEDIUM] CWE-79 CVE-2021-43543: Documents loaded with the CSP sandbox directive could have escaped the sandbox's script restriction Documents loaded with the CSP sandbox directive could have escaped the sandbox's script restriction by embedding additional content. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.
nvdosv
CVE-2020-26956P4MEDIUMCVSS 6.1fixed in 78.52020-12-09
CVE-2020-26956 [MEDIUM] CWE-79 CVE-2020-26956: In some cases, removing HTML elements during sanitization would keep existing SVG event handlers and In some cases, removing HTML elements during sanitization would keep existing SVG event handlers and therefore lead to XSS. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.
nvdosv
CVE-2012-3972P4MEDIUMCVSS 5.0fixed in 15.02012-08-29
CVE-2012-3972 [MEDIUM] CWE-200 CVE-2012-3972: The format-number functionality in the XSLT implementation in Mozilla Firefox before 15.0, Firefox E The format-number functionality in the XSLT implementation in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey before 2.12 allows remote attackers to obtain sensitive information via unspecified vectors that trigger a heap-based buffer over-read.
nvd
CVE-2016-5824P4MEDIUMCVSS 5.5≥ 0, < 1:60.5.0-12017-01-27
CVE-2016-5824 [MEDIUM] CVE-2016-5824: libical 1 libical 1.0 allows remote attackers to cause a denial of service (use-after-free) via a crafted ics file.
osv
CVE-2014-1552P4MEDIUMCVSS 5.8≤ 24.7v24.0+8 more2014-07-23
CVE-2014-1552 [MEDIUM] CWE-264 CVE-2014-1552: Mozilla Firefox before 31.0 and Thunderbird before 31.0 do not properly implement the sandbox attrib Mozilla Firefox before 31.0 and Thunderbird before 31.0 do not properly implement the sandbox attribute of the IFRAME element, which allows remote attackers to bypass intended restrictions on same-origin content via a crafted web site in conjunction with a redirect.
nvdosv
Mozilla Thunderbird vulnerabilities | cvebase