Known vulnerabilities in Mozilla Thunderbird - page 24

Vendor: Mozilla
Software CPE: cpe:2.3:a:mozilla:mozilla_thunderbird:*:*:*:*:*:*:*:*
Total vulnerabilities: 1221
Public exploits: 32
Known exploited (KEV): 12
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Mozilla Thunderbird Mozilla Thunderbird is affected by 1221 known vulnerabilities: 10 critical, 549 high, 341 medium, 321 low Critical High Medium Low

Vulnerabilities (1221)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU103615 - Improper input validation
CVE-2025-1015
CWE-20 Low
Available
No
128.7.0 04.02.2025 SB2025020464
SB2025020603
SB2025020901
and 13 more
#VU102429 - Memory corruption
CVE-2025-0247
CWE-119 High
No
No
134.0 07.01.2025 SB2025010749
SB2025010801
SB2025010802
and 5 more
#VU102428 - Memory corruption
CVE-2025-0243
CWE-119 High
No
No
128.6.0, 134.0 07.01.2025 SB2025010749
SB2025010801
SB2025010802
and 42 more
#VU102427 - Memory corruption
CVE-2025-0241
CWE-119 High
No
No
128.6.0, 134.0 07.01.2025 SB2025010749
SB2025010801
SB2025010802
and 33 more
#VU102426 - Use After Free
CVE-2025-0240
CWE-416 Medium
No
No
128.6.0, 134.0 07.01.2025 SB2025010749
SB2025010801
SB2025010802
and 33 more
#VU102425 - Improper Certificate Validation
CVE-2025-0239
CWE-295 Medium
No
No
128.6.0, 134.0 07.01.2025 SB2025010749
SB2025010801
SB2025010802
and 33 more
#VU102424 - Unintended Proxy or Intermediary ('Confused Deputy')
CVE-2025-0237
CWE-441 Low
No
No
128.6.0, 134.0 07.01.2025 SB2025010749
SB2025010801
SB2025010802
and 33 more
#VU102423 - Memory corruption
CVE-2025-0242
CWE-119 High
No
No
128.6.0, 134.0 07.01.2025 SB2025010749
SB2025010801
SB2025010802
and 47 more
#VU102422 - Use After Free
CVE-2025-0238
CWE-416 High
No
No
128.6.0, 134.0 07.01.2025 SB2025010749
SB2025010801
SB2025010802
and 38 more
#VU101796 - Improper input validation
CVE-2024-50336
CWE-20 Medium
No
No
128.5.2, 134.0 16.12.2024 SB2024121637
SB2024121638
SB2024121639
and 6 more
#VU100967 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-11708
CWE-362 Low
No
No
133.0 26.11.2024 SB2024112669
SB2024112671
SB2024112870
and 5 more
#VU100966 - NULL Pointer Dereference
CVE-2024-11706
CWE-476 Low
No
No
133.0 26.11.2024 SB2024112669
SB2024112671
SB2024112870
and 5 more
#VU100965 - NULL Pointer Dereference
CVE-2024-11705
CWE-476 Low
No
No
133.0 26.11.2024 SB2024112669
SB2024112671
SB2024112870
and 5 more
#VU100964 - Double Free
CVE-2024-11704
CWE-415 Medium
No
No
128.7.0, 133.0 26.11.2024 SB2024112669
SB2024112671
SB2024112870
and 15 more
#VU100959 - Memory corruption
CVE-2024-11699
CWE-119 High
No
No
128.5.0, 133.0 26.11.2024 SB2024112669
SB2024112670
SB2024112671
and 40 more
#VU100958 - Insufficient UI Warning of Dangerous Operations
CVE-2024-11698
CWE-357 Medium
No
No
128.5.0, 133.0 26.11.2024 SB2024112669
SB2024112670
SB2024112671
and 9 more
#VU100957 - Data Handling
CVE-2024-11697
CWE-19 Low
No
No
128.5.0, 133.0 26.11.2024 SB2024112669
SB2024112670
SB2024112671
and 43 more
#VU100956 - Error Handling
CVE-2024-11696
CWE-388 Medium
No
No
128.5.0, 133.0 26.11.2024 SB2024112669
SB2024112670
SB2024112671
and 40 more
#VU100955 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2024-11695
CWE-451 Medium
No
No
128.5.0, 133.0 26.11.2024 SB2024112669
SB2024112670
SB2024112671
and 40 more
#VU100951 - Memory corruption
CVE-2024-11691
CWE-119 High
No
No
115.18.0, 128.5.0, 133.0 26.11.2024 SB2024112669
SB2024112670
SB2024112671
and 9 more


Showing elements 461 - 480 out of 1221