Known vulnerabilities in thunderbird - page 30

Vendor: OpenAnolis
Software: thunderbird
Software CPE: cpe:2.3:o:openanolis:thunderbird:*:*:*:*:*:anolis_os:*:*
Total vulnerabilities: 662
Public exploits: 12
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting thunderbird thunderbird is affected by 662 known vulnerabilities: 5 critical, 313 high, 210 medium, 134 low Critical High Medium Low

Vulnerabilities (662)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU61895 - Resource exhaustion
CVE-2022-24713
CWE-400 Medium
No
No
91.8.0-1.0.1, 91.8.0-1.0.2 05.04.2022 SB2022040527
SB2022040526
SB2022040529
and 34 more
#VU61892 - Memory corruption
CVE-2022-28289
CWE-119 High
No
No
91.8.0-1.0.1, 91.8.0-1.0.2 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 24 more
#VU61890 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-28286
CWE-451 Medium
No
No
91.8.0-1.0.1, 91.8.0-1.0.2 05.04.2022 SB2022040526
SB2022040628
SB2022040629
and 23 more
#VU61889 - Resource Management Errors
CVE-2022-28285
CWE-399 Low
No
No
91.8.0-1.0.1, 91.8.0-1.0.2 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 26 more
#VU61886 - Use After Free
CVE-2022-28282
CWE-416 High
Available
No
91.8.0-1.0.1, 91.8.0-1.0.2 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 24 more
#VU61885 - Out-of-bounds write
CVE-2022-28281
CWE-787 High
Available
No
91.8.0-1.0.1, 91.8.0-1.0.2 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 24 more
#VU61109 - Improper Access Control
CVE-2022-26386
CWE-284 Low
No
No
91.7.0-2.0.1 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 24 more
#VU61105 - Use After Free
CVE-2022-26381
CWE-416 High
No
No
91.7.0-2.0.1 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 27 more
#VU61104 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2022-26387
CWE-367 Medium
No
No
91.7.0-2.0.1 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 27 more
#VU61103 - Permissions, Privileges, and Access Controls
CVE-2022-26384
CWE-264 Medium
No
No
91.7.0-2.0.1 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 27 more
#VU61102 - Insufficient UI Warning of Dangerous Operations
CVE-2022-26383
CWE-357 Low
No
No
91.7.0-2.0.1 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 27 more
#VU61033 - Use After Free
CVE-2022-26486
CWE-416 Critical
No
Exploited
91.7.0-2.0.1 05.03.2022 SB2022030501
SB2022030720
SB2022030724
and 26 more
#VU61032 - Use After Free
CVE-2022-26485
CWE-416 Critical
Available
Exploited
91.7.0-2.0.1 05.03.2022 SB2022030501
SB2022030720
SB2022030724
and 28 more
#VU60739 - Integer overflow
CVE-2022-25315
CWE-190 High
No
No
91.7.0-2.0.1 21.02.2022 SB2022022109
SB2022022113
SB2022022411
and 99 more
#VU60736 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-25235
CWE-94 High
No
No
91.7.0-2.0.1 21.02.2022 SB2022022109
SB2022022113
SB2022022411
and 106 more
#VU60733 - Improper input validation
CVE-2022-25236
CWE-20 Medium
No
No
91.7.0-2.0.1 21.02.2022 SB2022022109
SB2022022113
SB2022022411
and 109 more
#VU60628 - Out-of-bounds write
CVE-2022-0566
CWE-787 High
No
No
91.7.0-2.0.1 15.02.2022 SB2022021517
SB2022021814
SB2022022503
and 12 more
#VU57064 - Use After Free
CVE-2021-38496
CWE-416 High
No
No
91.6.0-1.0.1 05.10.2021 SB2021100515
SB2021100803
SB2021101208
and 21 more
#VU56374 - Memory corruption
CVE-2021-38493
CWE-119 High
No
No
91.6.0-1.0.1 07.09.2021 SB2021090711
SB2021090801
SB2021091202
and 17 more
#VU55598 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2021-32810
CWE-362 High
No
No
91.6.0-1.0.1 05.08.2021 SB2021080510
SB2021100515
SB2021101208
and 34 more


Showing elements 581 - 600 out of 662