Vulnerabilities > Mozilla > Thunderbird > 68.12

DATE CVE VULNERABILITY TITLE RISK
2020-08-10 CVE-2020-15655 A redirected HTTP request which is observed or modified through a web extension could bypass existing CORS checks, leading to potential disclosure of cross-origin information. 4.3
2020-08-10 CVE-2020-15654 Infinite Loop vulnerability in multiple products
When in an endless loop, a website specifying a custom cursor using CSS could make it look like the user is interacting with the user interface, when they are not.
network
low complexity
mozilla canonical CWE-835
6.5
2020-08-10 CVE-2020-15653 An iframe sandbox element with the allow-popups flag could be bypassed when using noopener links.
network
low complexity
mozilla canonical
6.5