Known vulnerabilities in thunderbird (Red Hat package) - page 2

Software CPE: cpe:2.3:o:red_hat:thunderbird_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 766
Public exploits: 17
Known exploited (KEV): 7
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting thunderbird (Red Hat package) thunderbird (Red Hat package) is affected by 766 known vulnerabilities: 7 critical, 358 high, 252 medium, 149 low Critical High Medium Low

Vulnerabilities (766)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU144068 - Integer overflow
CVE-2026-74964
CWE-190 Medium
No
No
140.14.0-1.el8_4, 140.14.0-1.el8_6, 140.14.0-1.el8_8, 140.14.0-1.el8_10, 140.14.0-1.el10_0, 140.14.0-1.el10_2 18.08.2026 SB2026081838
SB2026081987
SB2026081988
and 31 more
#VU144070 - Origin Validation Error
CVE-2026-74967
CWE-346 Medium
No
No
140.14.0-1.el8_4, 140.14.0-1.el8_6, 140.14.0-1.el8_8, 140.14.0-1.el8_10 18.08.2026 SB2026081838
SB2026081987
SB2026081988
and 29 more
#VU144062 - Improper Privilege Management
CVE-2026-74953
CWE-269 Medium
No
No
140.14.0-1.el8_4, 140.14.0-1.el8_6, 140.14.0-1.el8_8, 140.14.0-1.el8_10, 140.14.0-1.el10_0, 140.14.0-1.el10_2 18.08.2026 SB2026081838
SB2026081987
SB2026081988
and 31 more
#VU144066 - Origin Validation Error
CVE-2026-74962
CWE-346 Medium
No
No
140.14.0-1.el8_4, 140.14.0-1.el8_6, 140.14.0-1.el8_8, 140.14.0-1.el8_10, 140.14.0-1.el9_2, 140.14.0-1.el9_6, 140.14.0-1.el10_0, 140.14.0-1.el10_2 18.08.2026 SB2026081838
SB2026081987
SB2026081988
and 33 more
#VU144058 - Use After Free
CVE-2026-74936
CWE-416 High
No
No
140.14.0-1.el10_0, 140.14.0-1.el10_2 18.08.2026 SB2026081838
SB2026081987
SB2026081988
and 26 more
#VU144059 - Improper Privilege Management
CVE-2026-74941
CWE-269 High
No
No
140.14.0-1.el8_4, 140.14.0-1.el8_6, 140.14.0-1.el8_8, 140.14.0-1.el8_10 18.08.2026 SB2026081838
SB2026081987
SB2026081988
and 29 more
#VU144060 - Use After Free
CVE-2026-74944
CWE-416 High
No
No
140.14.0-1.el9_2, 140.14.0-1.el9_6 18.08.2026 SB2026081838
SB2026081987
SB2026081988
and 26 more
#VU144053 - Exposure of sensitive information to an unauthorized actor
CVE-2026-74948
CWE-200 Medium
No
No
140.14.0-1.el8_4, 140.14.0-1.el8_6, 140.14.0-1.el8_8, 140.14.0-1.el8_10, 140.14.0-1.el10_0, 140.14.0-1.el10_2 18.08.2026 SB2026081838
SB2026081987
SB2026081988
and 31 more
#VU144046 - Improper Access Control
CVE-2026-74935
CWE-284 High
No
No
140.14.0-1.el8_4, 140.14.0-1.el8_6, 140.14.0-1.el8_8, 140.14.0-1.el8_10, 140.14.0-1.el9_2, 140.14.0-1.el9_6, 140.14.0-1.el10_0, 140.14.0-1.el10_2 18.08.2026 SB2026081838
SB2026081987
SB2026081988
and 33 more
#VU138978 - Incorrect Calculation
CVE-2026-16363
CWE-682 High
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 20 more
#VU138983 - Protection Mechanism Failure
CVE-2026-16375
CWE-693 High
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 20 more
#VU138986 - Improper Access Control
CVE-2026-16381
CWE-284 High
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 20 more
#VU138989 - Protection Mechanism Failure
CVE-2026-16390
CWE-693 Medium
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 20 more
#VU138990 - Exposure of sensitive information to an unauthorized actor
CVE-2026-16391
CWE-200 Medium
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 20 more
#VU138993 - Memory corruption
CVE-2026-16412
CWE-119 High
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 20 more
#VU138965 - Improper input validation
CVE-2026-16350
CWE-20 Medium
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 20 more
#VU138970 - Incorrect Calculation
CVE-2026-16355
CWE-682 High
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 20 more
#VU138971 - Use After Free
CVE-2026-16356
CWE-416 High
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 21.07.2026 SB2026072201
SB2026072301
SB2026072302
and 20 more
#VU137818 - Improper Access Control
CVE-2026-15719
CWE-284 High
No
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 16.07.2026 SB2026071604
SB2026072301
SB2026072442
and 17 more
#VU137817 - Access of Uninitialized Pointer
CVE-2026-15718
CWE-824 High
Available
No
140.13.0-1.el8_10, 140.13.0-1.el9_2, 140.13.0-1.el9_6, 140.13.0-1.el9_8, 140.13.0-1.el10_0, 140.13.0-1.el10_2 16.07.2026 SB2026071604
SB2026072301
SB2026072442
and 17 more


Showing elements 21 - 40 out of 766