#VU109193 Information disclosure in Mozilla Thunderbird - CVE-2025-3932
Published: May 14, 2025
Mozilla Thunderbird
Mozilla
Description
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to incorrect handling of tracking links. A remote attacker can create a specially crafted email message that showed a tracking link as an attachment. If the user attempted to open the attachment, Thunderbird automatically accessed the link.