Mozilla

Thunderbird

2081 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.21%
  • Veröffentlicht 30.09.2026 17:15:06
  • Zuletzt bearbeitet 30.09.2026 19:05:23

An attacker could cause a heap buffer overflow by getting a user to open an email that is greater than or equal to 2GB in size. This vulnerability was fixed in Thunderbird 157, Thunderbird 140.17, and Thunderbird 153.4.

  • EPSS 0.21%
  • Veröffentlicht 29.09.2026 13:17:53
  • Zuletzt bearbeitet 05.10.2026 13:52:00

Information disclosure in the Networking component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, and Firefox ESR 140.17.

  • EPSS 0.15%
  • Veröffentlicht 29.09.2026 13:17:48
  • Zuletzt bearbeitet 01.10.2026 16:17:30

Mitigation bypass in the Bookmarks & History component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.

  • EPSS 0.15%
  • Veröffentlicht 29.09.2026 13:17:48
  • Zuletzt bearbeitet 01.10.2026 16:17:30

Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.

  • EPSS 0.15%
  • Veröffentlicht 29.09.2026 13:17:48
  • Zuletzt bearbeitet 01.10.2026 16:17:30

Mitigation bypass in the DOM: Navigation component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.

  • EPSS 0.25%
  • Veröffentlicht 29.09.2026 13:17:48
  • Zuletzt bearbeitet 30.09.2026 18:18:13

Use-after-free in the DOM: UI Events & Focus Handling component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 153.4, and Firefox 157.

  • EPSS 0.26%
  • Veröffentlicht 29.09.2026 13:17:48
  • Zuletzt bearbeitet 05.10.2026 14:06:13

Use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 140.17, Thunderbird 153.4, Firefox ESR 115.42, and Firefox ESR 140.17.

  • EPSS 0.28%
  • Veröffentlicht 29.09.2026 13:17:47
  • Zuletzt bearbeitet 05.10.2026 16:59:33

Sandbox escape due to use-after-free in the Widget: Gtk component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, and Firefox ESR 140.17.

  • EPSS 0.28%
  • Veröffentlicht 29.09.2026 13:17:47
  • Zuletzt bearbeitet 05.10.2026 14:07:09

Sandbox escape due to incorrect boundary conditions in the XPCOM component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, Firefox ESR 115.42, and Firefox ESR 140.17.

  • EPSS 0.25%
  • Veröffentlicht 29.09.2026 13:17:47
  • Zuletzt bearbeitet 05.10.2026 14:06:39

Privilege escalation in the Address Bar component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird 153.4, Firefox 157, and Firefox ESR 140.17.