Known vulnerabilities in thunderbird - page 16

Vendor: OpenAnolis
Software: thunderbird
Software CPE: cpe:2.3:o:openanolis:thunderbird:*:*:*:*:*:anolis_os:*:*
Total vulnerabilities: 662
Public exploits: 12
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting thunderbird thunderbird is affected by 662 known vulnerabilities: 5 critical, 313 high, 210 medium, 134 low Critical High Medium Low

Vulnerabilities (662)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU105319 - Memory corruption
CVE-2025-1938
CWE-119 High
No
No
128.8.0-2.0.1 05.03.2025 SB2025030502
SB2025030503
SB2025030504
and 35 more
#VU105304 - Memory corruption
CVE-2025-1937
CWE-119 High
No
No
128.8.0-2.0.1 05.03.2025 SB2025030502
SB2025030503
SB2025030504
and 36 more
#VU103616 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2025-0510
CWE-451 Medium
No
No
128.7.0-1.0.1 04.02.2025 SB2025020464
SB2025020465
SB2025020901
and 13 more
#VU103615 - Improper input validation
CVE-2025-1015
CWE-20 Low
Available
No
128.7.0-1.0.1 04.02.2025 SB2025020464
SB2025020603
SB2025020901
and 13 more
#VU103610 - Improper Certificate Validation
CVE-2025-1014
CWE-295 Low
No
No
128.7.0-1.0.1 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103609 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-1013
CWE-362 Low
No
No
128.7.0-1.0.1 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103608 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-1011
CWE-94 High
No
No
128.7.0-1.0.1 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103606 - Use After Free
CVE-2025-1012
CWE-416 High
No
No
128.7.0-1.0.1 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103605 - Use After Free
CVE-2025-1010
CWE-416 High
No
No
128.7.0-1.0.1 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103604 - Use After Free
CVE-2025-1009
CWE-416 High
No
No
128.7.0-1.0.1 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU100312 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2024-49040
CWE-451 Medium
No
No
128.7.0-1.0.1 12.11.2024 SB20241112115
SB20250328503
SB2025072236
#VU97929 - Memory corruption
CVE-2024-9403
CWE-119 High
No
No
128.3.0-1.0.1 01.10.2024 SB2024100154
SB2024100155
SB2024100270
and 26 more
#VU97926 - Memory corruption
CVE-2024-9402
CWE-119 High
No
No
128.3.0-1.0.1 01.10.2024 SB2024100154
SB2024100155
SB2024100156
and 44 more
#VU97925 - Resource exhaustion
CVE-2024-9400
CWE-400 Low
No
No
128.3.0-1.0.1 01.10.2024 SB2024100154
SB2024100155
SB2024100156
and 43 more
#VU97924 - Improper input validation
CVE-2024-9399
CWE-20 Low
No
No
128.3.0-1.0.1 01.10.2024 SB2024100154
SB2024100155
SB2024100156
and 43 more
#VU97923 - Exposure of sensitive information to an unauthorized actor
CVE-2024-9398
CWE-200 Low
No
No
128.3.0-1.0.1 01.10.2024 SB2024100154
SB2024100155
SB2024100156
and 40 more
#VU97922 - Insufficient UI Warning of Dangerous Operations
CVE-2024-9397
CWE-357 Low
No
No
128.3.0-1.0.1 01.10.2024 SB2024100154
SB2024100155
SB2024100156
and 43 more
#VU97921 - Memory corruption
CVE-2024-9396
CWE-119 Medium
No
No
128.3.0-1.0.1 01.10.2024 SB2024100154
SB2024100155
SB2024100156
and 43 more
#VU97919 - Memory corruption
CVE-2024-9401
CWE-119 High
No
No
128.3.0-1.0.1 01.10.2024 SB2024100154
SB2024100155
SB2024100156
and 46 more
#VU97918 - Permissions, Privileges, and Access Controls
CVE-2024-9394
CWE-264 Medium
No
No
128.3.0-1.0.1 01.10.2024 SB2024100154
SB2024100155
SB2024100156
and 43 more


Showing elements 301 - 320 out of 662