Known vulnerabilities in Mozilla Thunderbird 128.1.1 - page 11

Vendor: Mozilla
Version: 128.1.1
Software CPE: cpe:2.3:a:mozilla:mozilla_thunderbird:*:*:*:*:*:*:*:*
Total vulnerabilities: 363
Public exploits: 4
Known exploited (KEV): 1
Highest CVSSv4 Score: 8.8

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Mozilla Thunderbird version 128.1.1 Mozilla Thunderbird 128.1.1 is affected by 363 vulnerabilities: 1 critical, 193 high, 108 medium, 61 low Critical High Medium Low

Vulnerabilities (363)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU121218 - Memory corruption
CVE-2026-0891
CWE-119 High
No
No
140.7.0, 147.0 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121217 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2026-0890
CWE-451 Low
No
No
140.7.0, 147.0 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121216 - Improper Restriction of Rendered UI Layers or Frames
CVE-2026-0887
CWE-1021 Medium
No
No
140.7.0, 147.0 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121215 - Use After Free
CVE-2026-0885
CWE-416 Low
No
No
140.7.0, 147.0 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121214 - Use After Free
CVE-2026-0884
CWE-416 Low
No
No
140.7.0, 147.0 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121211 - Memory corruption
CVE-2026-0886
CWE-119 High
No
No
140.7.0, 147.0 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU119418 - Memory corruption
CVE-2025-14333
CWE-119 High
No
No
140.6.0, 146.0 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 40 more
#VU119417 - Improper input validation
CVE-2025-14330
CWE-20 Medium
No
No
140.6.0, 146.0 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 41 more
#VU119416 - Improper Privilege Management
CVE-2025-14329
CWE-269 Medium
No
No
140.6.0, 146.0 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 41 more
#VU119415 - Improper Privilege Management
CVE-2025-14328
CWE-269 Medium
No
No
140.6.0, 146.0 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 41 more
#VU119414 - Improper input validation
CVE-2025-14325
CWE-20 High
No
No
140.6.0, 146.0 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 41 more
#VU119413 - Use After Free
CVE-2025-14321
CWE-416 High
Public exploit available
No
140.6.0, 146.0 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 41 more
#VU119412 - Protection Mechanism Failure
CVE-2025-14331
CWE-693 Medium
No
No
140.6.0, 146.0 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 41 more
#VU119411 - Improper input validation
CVE-2025-14324
CWE-20 High
No
No
140.6.0, 146.0 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 41 more
#VU119410 - Improper Privilege Management
CVE-2025-14323
CWE-269 Medium
No
No
140.6.0, 146.0 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 41 more
#VU119409 - Memory corruption
CVE-2025-14322
CWE-119 High
No
No
140.6.0, 146.0 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 41 more
#VU118270 - Memory corruption
CVE-2025-13027
CWE-119 High
No
No
145.0 11.11.2025 SB2025111145
SB2025111413
SB2025111414
and 2 more
#VU118261 - Protection Mechanism Failure
CVE-2025-13018
CWE-693 Medium
No
No
140.5.0, 145.0 11.11.2025 SB2025111145
SB2025111260
SB2025111303
and 36 more
#VU118258 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2025-13015
CWE-451 Low
No
No
140.5.0, 145.0 11.11.2025 SB2025111145
SB2025111260
SB2025111303
and 36 more
#VU118257 - Use After Free
CVE-2025-13014
CWE-416 Low
No
No
140.5.0, 145.0 11.11.2025 SB2025111145
SB2025111260
SB2025111303
and 36 more


Showing elements 201 - 220 out of 363