<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T20:55:38.001593+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2021-avi-796</id>
    <title>certfr-2021-avi-796 — De multiples vulnérabilités ont été découvertes dans Mozilla
Thunderbird. Elles permettent à un attaquant de provoquer…</title>
    <updated>2026-10-03T20:55:38.013104+00:00</updated>
    <content>certfr-2021-avi-796</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2021-avi-796"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2022-36982</id>
    <title>cnvd-2022-36982</title>
    <updated>2026-10-03T20:55:38.013149+00:00</updated>
    <content>cnvd-2022-36982</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2022-36982"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-30280</id>
    <title>EUVD-2026-30280</title>
    <updated>2026-10-03T20:55:38.013165+00:00</updated>
    <content>EUVD-2026-30280</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-30280"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-38502</id>
    <title>fkie_cve-2021-38502</title>
    <updated>2026-10-03T20:55:38.013177+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Thunderbird ignored the configuration to require STARTTLS security for an SMTP connection. A MITM could perform a downgrade attack to intercept transmitted messages, or could take control of the authenticated session to execute SMTP commands chosen by the MITM. If an unprotected authentication method was configured, the MITM could obtain the authentication credentials, too. This vulnerability affects Thunderbird &lt; 91.2.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-38502"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-wf24-4m95-7wjm</id>
    <title>GHSA-wf24-4m95-7wjm</title>
    <updated>2026-10-03T20:55:38.013208+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Thunderbird ignored the configuration to require STARTTLS security for an SMTP connection. A MITM could perform a downgrade attack to intercept transmitted messages, or could take control of the authenticated session to execute SMTP commands chosen by the MITM. If an unprotected authentication method was configured, the MITM could obtain the authentication credentials, too. This vulnerability affects Thunderbird &lt; 91.2.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-wf24-4m95-7wjm"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-38502</id>
    <title>gsd-2021-38502</title>
    <updated>2026-10-03T20:55:38.013226+00:00</updated>
    <content>gsd-2021-38502</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-38502"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2021:1635-1</id>
    <title>openSUSE-SU-2021:1635-1 — Security update for MozillaThunderbird</title>
    <updated>2026-10-03T20:55:38.013237+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for MozillaThunderbird</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2021:1635-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2021:3839</id>
    <title>RHSA-2021:3839 — Red Hat Security Advisory: thunderbird security update</title>
    <updated>2026-10-03T20:55:38.013302+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>rust-crossbeam-deque: race condition may lead to double free Mozilla: Use-after-free in MessageTask Mozilla: Validation message could have been overlaid on another origin Mozilla: Use-after-free of nsLanguageAtomService object Mozilla: Memory safety bugs fixed in Firefox 93, Firefox ESR 78.15, and Firefox ESR 91.2 Mozilla: Memory safety bugs fixed in Firefox 93 and Firefox ESR 91.2 Mozilla: Downgrade attack on SMTP STARTTLS connections</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2021:3839"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2021:4150-1</id>
    <title>SUSE-SU-2021:4150-1 — Security update for MozillaThunderbird</title>
    <updated>2026-10-03T20:55:38.013340+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for MozillaThunderbird</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2021:4150-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-38502</id>
    <title>UBUNTU-CVE-2021-38502</title>
    <updated>2026-10-03T20:55:38.013369+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:18.04:LTS: thunderbird, Ubuntu:20.04:LTS: thunderbird, Ubuntu:22.04:LTS: thunderbird</p>
<p>Thunderbird ignored the configuration to require STARTTLS security for an SMTP connection. A MITM could perform a downgrade attack to intercept transmitted messages, or could take control of the authenticated session to execute SMTP commands chosen by the MITM. If an unprotected authentication method was configured, the MITM could obtain the authentication credentials, too. This vulnerability affects Thunderbird &lt; 91.2.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-38502"/>
  </entry>
</feed>
