Vulnerabilities > Mozilla > Thunderbird > Critical

DATE CVE VULNERABILITY TITLE RISK
2025-02-04 CVE-2025-1020 Out-of-bounds Write vulnerability in Mozilla Firefox
Memory safety bugs present in Firefox 134 and Thunderbird 134.
network
low complexity
mozilla CWE-787
critical
9.8
2025-02-04 CVE-2025-1017 Out-of-bounds Write vulnerability in Mozilla Firefox
Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 128.6, and Thunderbird 128.6.
network
low complexity
mozilla CWE-787
critical
9.8
2025-02-04 CVE-2025-1016 Out-of-bounds Write vulnerability in Mozilla Firefox
Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 115.19, Firefox ESR 128.6, Thunderbird 115.19, and Thunderbird 128.6.
network
low complexity
mozilla CWE-787
critical
9.8
2025-02-04 CVE-2025-1009 Use After Free vulnerability in Mozilla Firefox
An attacker could have caused a use-after-free via crafted XSLT data, leading to a potentially exploitable crash.
network
low complexity
mozilla CWE-416
critical
9.8
2024-10-09 CVE-2024-9680 Use After Free vulnerability in multiple products
An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animation timelines.
network
low complexity
mozilla debian CWE-416
critical
9.8
2024-09-03 CVE-2024-8387 Out-of-bounds Write vulnerability in Mozilla Firefox, Firefox ESR and Thunderbird
Memory safety bugs present in Firefox 129, Firefox ESR 128.1, and Thunderbird 128.1.
network
low complexity
mozilla CWE-787
critical
9.8
2024-08-06 CVE-2024-7519 Out-of-bounds Write vulnerability in Mozilla Firefox
Insufficient checks when processing graphics shared memory could have led to memory corruption.
network
low complexity
mozilla CWE-787
critical
9.6
2024-04-16 CVE-2024-3863 Unspecified vulnerability in Mozilla Thunderbird
The executable file warning was not presented when downloading .xrm-ms files.
network
low complexity
mozilla
critical
9.8
2023-10-25 CVE-2023-5730 Out-of-bounds Write vulnerability in multiple products
Memory safety bugs present in Firefox 118, Firefox ESR 115.3, and Thunderbird 115.3.
network
low complexity
mozilla debian CWE-787
critical
9.8
2023-09-27 CVE-2023-5176 Out-of-bounds Write vulnerability in multiple products
Memory safety bugs present in Firefox 117, Firefox ESR 115.2, and Thunderbird 115.2.
network
low complexity
mozilla debian CWE-787
critical
9.8