Known vulnerabilities in thunderbird (Red Hat package) - page 2

Software CPE: cpe:2.3:o:red_hat:thunderbird_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 737
Public exploits: 16
Known exploited (KEV): 7
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting thunderbird (Red Hat package) thunderbird (Red Hat package) is affected by 737 known vulnerabilities: 7 critical, 346 high, 238 medium, 146 low Critical High Medium Low

Vulnerabilities (737)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU139188 - Off-by-one Error
CVE-2026-14899
CWE-193 Medium
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 23.07.2026 SB2026072301
SB2026072302
SB2026080368
and 10 more
#VU138980 - Integer overflow
CVE-2026-16369
CWE-190 High
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 18 more
#VU138981 - Improper Privilege Management
CVE-2026-16371
CWE-269 High
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 18 more
#VU138982 - Exposure of sensitive information to an unauthorized actor
CVE-2026-16374
CWE-200 Medium
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 18 more
#VU138985 - Improper Privilege Management
CVE-2026-16379
CWE-269 High
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 18 more
#VU138987 - Protection Mechanism Failure
CVE-2026-16383
CWE-693 Medium
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 18 more
#VU138991 - Improper Privilege Management
CVE-2026-16396
CWE-269 Medium
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 18 more
#VU138992 - Exposure of sensitive information to an unauthorized actor
CVE-2026-16405
CWE-200 Low
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 18 more
#VU138966 - Use After Free
CVE-2026-16351
CWE-416 High
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 18 more
#VU138968 - NULL Pointer Dereference
CVE-2026-16353
CWE-476 Medium
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 18 more
#VU138969 - Exposure of sensitive information to an unauthorized actor
CVE-2026-16354
CWE-200 Medium
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 18 more
#VU138972 - Improper input validation
CVE-2026-16357
CWE-20 Medium
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 18 more
#VU138974 - Improper input validation
CVE-2026-16359
CWE-20 Medium
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 18 more
#VU134619 - Memory corruption
CVE-2026-12329
CWE-119 High
No
No
140.12.0-1.el8_4, 140.12.0-1.el8_6, 140.12.0-1.el8_8, 140.12.0-1.el8_10, 140.12.0-1.el9_2, 140.12.0-1.el9_4, 140.12.0-1.el10_0, 140.12.0-1.el10_2 16.06.2026 SB2026061653
SB2026061756
SB2026061801
and 27 more
#VU134627 - Improper Access Control
CVE-2026-12311
CWE-284 High
No
No
140.12.0-1.el8_4, 140.12.0-1.el8_6, 140.12.0-1.el8_8, 140.12.0-1.el8_10, 140.12.0-1.el9_2, 140.12.0-1.el9_4, 140.12.0-1.el10_0, 140.12.0-1.el10_2 16.06.2026 SB2026061653
SB2026061756
SB2026061757
and 28 more
#VU134629 - Improper Access Control
CVE-2026-12313
CWE-284 High
No
No
140.12.0-1.el8_4, 140.12.0-1.el8_6, 140.12.0-1.el8_8, 140.12.0-1.el8_10, 140.12.0-1.el9_2, 140.12.0-1.el9_4, 140.12.0-1.el10_0, 140.12.0-1.el10_2 16.06.2026 SB2026061653
SB2026061756
SB2026061757
and 28 more
#VU134633 - Memory corruption
CVE-2026-12327
CWE-119 High
No
No
140.12.0-1.el8_4, 140.12.0-1.el8_6, 140.12.0-1.el8_8, 140.12.0-1.el8_10, 140.12.0-1.el9_2, 140.12.0-1.el9_4, 140.12.0-1.el10_0, 140.12.0-1.el10_2 16.06.2026 SB2026061653
SB2026061756
SB2026061757
and 29 more
#VU134605 - Memory corruption
CVE-2026-12290
CWE-119 High
No
No
140.12.0-1.el8_4, 140.12.0-1.el8_6, 140.12.0-1.el8_8, 140.12.0-1.el8_10, 140.12.0-1.el9_2, 140.12.0-1.el9_4, 140.12.0-1.el10_0, 140.12.0-1.el10_2 16.06.2026 SB2026061653
SB2026061756
SB2026061757
and 29 more
#VU134607 - Improper Access Control
CVE-2026-12294
CWE-284 High
No
No
140.12.0-1.el8_4, 140.12.0-1.el8_6, 140.12.0-1.el8_8, 140.12.0-1.el8_10, 140.12.0-1.el9_2, 140.12.0-1.el9_4, 140.12.0-1.el10_0, 140.12.0-1.el10_2 16.06.2026 SB2026061653
SB2026061756
SB2026061757
and 29 more
#VU134610 - Incorrect Calculation
CVE-2026-12299
CWE-682 High
No
No
140.12.0-1.el8_4, 140.12.0-1.el8_6, 140.12.0-1.el8_8, 140.12.0-1.el8_10, 140.12.0-1.el9_2, 140.12.0-1.el9_4, 140.12.0-1.el10_0, 140.12.0-1.el10_2 16.06.2026 SB2026061653
SB2026061756
SB2026061757
and 28 more


Showing elements 21 - 40 out of 737