Known vulnerabilities in Mozilla Thunderbird - page 25

Vendor: Mozilla
Software CPE: cpe:2.3:a:mozilla:mozilla_thunderbird:*:*:*:*:*:*:*:*
Total vulnerabilities: 1221
Public exploits: 32
Known exploited (KEV): 12
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Mozilla Thunderbird Mozilla Thunderbird is affected by 1221 known vulnerabilities: 10 critical, 549 high, 341 medium, 321 low Critical High Medium Low

Vulnerabilities (1221)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU100962 - Permissions, Privileges, and Access Controls
CVE-2024-11702
CWE-264 Low
No
No
133.0 26.11.2024 SB2024112669
SB2024112671
#VU100961 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2024-11701
CWE-451 Medium
No
No
133.0 26.11.2024 SB2024112669
SB2024112671
SB2024112870
and 5 more
#VU100960 - Insufficient UI Warning of Dangerous Operations
CVE-2024-11700
CWE-357 Low
No
No
133.0 26.11.2024 SB2024112669
SB2024112671
SB2025012308
and 2 more
#VU100954 - Insufficient UI Warning of Dangerous Operations
CVE-2024-11693
CWE-357 Medium
No
No
128.5.0, 133.0 26.11.2024 SB2024112669
SB2024112670
SB2024112671
and 12 more
#VU100953 - Insufficient UI Warning of Dangerous Operations
CVE-2024-11692
CWE-357 Low
No
No
128.5.0, 133.0 26.11.2024 SB2024112669
SB2024112670
SB2024112671
and 43 more
#VU100952 - Security Features
CVE-2024-11694
CWE-254 Medium
No
No
115.18.0, 128.5.0, 133.0 26.11.2024 SB2024112669
SB2024112670
SB2024112671
and 41 more
#VU100447 - Exposure of sensitive information to an unauthorized actor
CVE-2024-11159
CWE-200 Low
No
No
128.4.3, 132.0.1 13.11.2024 SB2024111333
SB2024111603
SB2024112544
and 12 more
#VU99491 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-10468
CWE-362 Medium
No
No
132.0 29.10.2024 SB2024102965
SB2024102967
SB2024103046
and 6 more
#VU99490 - Memory corruption
CVE-2024-10467
CWE-119 High
No
No
128.4.0, 132.0 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99489 - Resource Management Errors
CVE-2024-10466
CWE-399 Low
No
No
128.4.0, 132.0 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99488 - Insufficient UI Warning of Dangerous Operations
CVE-2024-10465
CWE-357 Low
No
No
128.4.0, 132.0 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99487 - Resource Management Errors
CVE-2024-10464
CWE-399 Low
No
No
128.4.0, 132.0 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99486 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2024-10462
CWE-451 Medium
No
No
128.4.0, 132.0 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99485 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-10461
CWE-79 Medium
No
No
128.4.0, 132.0 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99484 - Insufficient UI Warning of Dangerous Operations
CVE-2024-10460
CWE-357 Low
No
No
128.4.0, 132.0 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99482 - Exposure of sensitive information to an unauthorized actor
CVE-2024-10463
CWE-200 Low
No
No
128.4.0, 132.0 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99481 - Use After Free
CVE-2024-10459
CWE-416 High
No
No
128.4.0, 132.0 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99480 - Permissions, Privileges, and Access Controls
CVE-2024-10458
CWE-264 Medium
No
No
128.4.0, 132.0 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU98333 - Use After Free
CVE-2024-9680
CWE-416 Critical
Available
Exploited
115.16.0, 128.3.1, 131.0.1 09.10.2024 SB2024100998
SB2024101002
SB2024101049
and 44 more
#VU97920 - Permissions, Privileges, and Access Controls
CVE-2024-8900
CWE-264 Medium
No
No
128.3.0 01.10.2024 SB2024100154
SB2024100156
SB2024100339
and 24 more


Showing elements 481 - 500 out of 1221