Known vulnerabilities in thunderbird - page 4

Vendor: OpenAnolis
Software: thunderbird
Software CPE: cpe:2.3:o:openanolis:thunderbird:*:*:*:*:*:anolis_os:*:*
Total vulnerabilities: 662
Public exploits: 12
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting thunderbird thunderbird is affected by 662 known vulnerabilities: 5 critical, 313 high, 210 medium, 134 low Critical High Medium Low

Vulnerabilities (662)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU134604 - Improper Access Control
CVE-2026-12289
CWE-284 High
No
No
140.12.0-1.0.1 16.06.2026 SB2026061653
SB2026061756
SB2026061757
and 28 more
#VU121218 - Memory corruption
CVE-2026-0891
CWE-119 High
No
No
140.12.0-1.0.1 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121217 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2026-0890
CWE-451 Low
No
No
140.12.0-1.0.1 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121216 - Improper Restriction of Rendered UI Layers or Frames
CVE-2026-0887
CWE-1021 Medium
No
No
140.12.0-1.0.1 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121215 - Use After Free
CVE-2026-0885
CWE-416 Low
No
No
140.12.0-1.0.1 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121214 - Use After Free
CVE-2026-0884
CWE-416 Low
No
No
140.12.0-1.0.1 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121213 - Exposure of sensitive information to an unauthorized actor
CVE-2026-0883
CWE-200 Medium
No
No
140.12.0-1.0.1 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121212 - Memory corruption
CVE-2026-0878
CWE-119 High
No
No
140.12.0-1.0.1 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121211 - Memory corruption
CVE-2026-0886
CWE-119 High
No
No
140.12.0-1.0.1 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121210 - Integer overflow
CVE-2026-0880
CWE-190 High
No
No
140.12.0-1.0.1 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121209 - Use After Free
CVE-2026-0882
CWE-416 High
No
No
140.12.0-1.0.1 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121208 - Memory corruption
CVE-2026-0879
CWE-119 High
No
No
140.12.0-1.0.1 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU121207 - Protection Mechanism Failure
CVE-2026-0877
CWE-693 High
No
No
140.12.0-1.0.1 13.01.2026 SB2026011359
SB20260114138
SB2026011516
and 36 more
#VU119420 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2025-14327
CWE-451 Medium
No
No
140.12.0-1.0.1 09.12.2025 SB2025120939
SB20251210204
SB20260114138
and 36 more
#VU119418 - Memory corruption
CVE-2025-14333
CWE-119 High
No
No
140.12.0-1.0.1 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 40 more
#VU119417 - Improper input validation
CVE-2025-14330
CWE-20 Medium
No
No
140.12.0-1.0.1 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 41 more
#VU119416 - Improper Privilege Management
CVE-2025-14329
CWE-269 Medium
No
No
140.12.0-1.0.1 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 41 more
#VU119415 - Improper Privilege Management
CVE-2025-14328
CWE-269 Medium
No
No
140.12.0-1.0.1 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 41 more
#VU119414 - Improper input validation
CVE-2025-14325
CWE-20 High
No
No
140.12.0-1.0.1 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 41 more
#VU119412 - Protection Mechanism Failure
CVE-2025-14331
CWE-693 Medium
No
No
140.12.0-1.0.1 09.12.2025 SB2025120939
SB20251210189
SB20251210190
and 41 more


Showing elements 61 - 80 out of 662