<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 04:57:38 +0000</lastBuildDate>
    <item>
      <title>ALSA-2025:4229 — Important: thunderbird security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2025:4229</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: thunderbird&lt;/p&gt;
&lt;p&gt;Mozilla Thunderbird is a standalone mail and newsgroup client.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* thunderbird: User Interface (UI) Misrepresentation of attachment URL (CVE-2025-3523)
  * thunderbird: Information Disclosure of /tmp directory listing (CVE-2025-2830)
  * thunderbird: Leak of hashed Window credentials via crafted attachment URL (CVE-2025-3522)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: thunderbird&lt;/p&gt;
&lt;p&gt;Mozilla Thunderbird is a standalone mail and newsgroup client.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* thunderbird: User Interface (UI) Misrepresentation of attachment URL (CVE-2025-3523)
  * thunderbird: Information Disclosure of /tmp directory listing (CVE-2025-2830)
  * thunderbird: Leak of hashed Window credentials via crafted attachment URL (CVE-2025-3522)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2025:4229</guid>
    </item>
    <item>
      <title>bdu:2025-06555</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-06555</link>
      <description>bdu:2025-06555</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-06555</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0317 — De multiples vulnérabilités ont été découvertes dans les produits Mozilla. Elles permettent à un attaquant de provoquer…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0317</link>
      <description>certfr-2025-avi-0317</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0317</guid>
    </item>
    <item>
      <title>EUVD-2026-290728</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-290728</link>
      <description>EUVD-2026-290728</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-290728</guid>
    </item>
    <item>
      <title>fkie_cve-2025-3522</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-3522</link>
      <description>&lt;p&gt;Thunderbird processes the X-Mozilla-External-Attachment-URL header to handle attachments which can be hosted externally. When an email is opened, Thunderbird accesses the specified URL to  determine file size, and navigates to it when the user clicks the attachment. Because the URL is not validated or sanitized, it can reference internal resources like chrome:// or SMB share file:// links, potentially leading to hashed Windows credential leakage and opening the door to more serious security issues. This vulnerability was fixed in Thunderbird 137.0.2 and Thunderbird 128.9.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Thunderbird processes the X-Mozilla-External-Attachment-URL header to handle attachments which can be hosted externally. When an email is opened, Thunderbird accesses the specified URL to  determine file size, and navigates to it when the user clicks the attachment. Because the URL is not validated or sanitized, it can reference internal resources like chrome:// or SMB share file:// links, potentially leading to hashed Windows credential leakage and opening the door to more serious security issues. This vulnerability was fixed in Thunderbird 137.0.2 and Thunderbird 128.9.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-3522</guid>
    </item>
    <item>
      <title>GHSA-78fw-w53r-pgwg</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-78fw-w53r-pgwg</link>
      <description>&lt;p&gt;Thunderbird processes the X-Mozilla-External-Attachment-URL header to handle attachments which can be hosted externally. When an email is opened, Thunderbird accesses the specified URL to  determine file size, and navigates to it when the user clicks the attachment. Because the URL is not validated or sanitized, it can reference internal resources like chrome:// or SMB share file:// links, potentially leading to hashed Windows credential leakage and opening the door to more serious security issues. This vulnerability affects Thunderbird &amp;lt; 137.0.2 and Thunderbird &amp;lt; 128.9.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Thunderbird processes the X-Mozilla-External-Attachment-URL header to handle attachments which can be hosted externally. When an email is opened, Thunderbird accesses the specified URL to  determine file size, and navigates to it when the user clicks the attachment. Because the URL is not validated or sanitized, it can reference internal resources like chrome:// or SMB share file:// links, potentially leading to hashed Windows credential leakage and opening the door to more serious security issues. This vulnerability affects Thunderbird &amp;lt; 137.0.2 and Thunderbird &amp;lt; 128.9.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-78fw-w53r-pgwg</guid>
    </item>
    <item>
      <title>OESA-2025-1835 — thunderbird security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2025-1835</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP2: thunderbird&lt;/p&gt;
&lt;p&gt;Mozilla Thunderbird is a standalone mail and newsgroup client.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A permission leak could have occurred from a trusted site to an untrusted site via `embed` or `object` elements. This vulnerability affects Firefox &amp;amp;lt; 132, Firefox ESR &amp;amp;lt; 128.4, Firefox ESR &amp;amp;lt; 115.17, Thunderbird &amp;amp;lt; 128.4, and Thunderbird &amp;amp;lt; 132.(CVE-2024-10458)&lt;/p&gt;
&lt;p&gt;An attacker could have caused a use-after-free when accessibility was enabled, leading to a potentially exploitable crash. This vulnerability affects Firefox &amp;amp;lt; 132, Firefox ESR &amp;amp;lt; 128.4, Firefox ESR &amp;amp;lt; 115.17, Thunderbird &amp;amp;lt; 128.4, and Thunderbird &amp;amp;lt; 132.(CVE-2024-10459)&lt;/p&gt;
&lt;p&gt;The origin of an external protocol handler prompt could have been obscured using a data: URL within an `iframe`. This vulnerability affects Firefox &amp;amp;lt; 132, Firefox ESR &amp;amp;lt; 128.4, Thunderbird &amp;amp;lt; 128.4, and Thunderbird &amp;amp;lt; 132.(CVE-2024-10460)&lt;/p&gt;
&lt;p&gt;In multipart/x-mixed-replace responses, `Content-Disposition: attachment` in the response header was not respected and did not force a download, which could allow XSS attacks. This vulnerability affects Firefox &amp;amp;lt; 132, Firefox ESR &amp;amp;lt; 128.4, Thunderbird &amp;amp;lt; 128.4, and Thunderbird &amp;amp;lt; 132.(CVE-2024-10461)&lt;/p&gt;
&lt;p&gt;Truncation of a long URL could have allowed origin spoofing in a permission prompt. This vulnerability affects Firefox &amp;amp;lt; 132, Firefox ESR &amp;amp;lt; 128.4, Thunderbird &amp;amp;lt; 128.4, and Thunderbird &amp;amp;lt; 132.(CVE-2024-10462)&lt;/p&gt;
&lt;p&gt;Video frames could have been leaked between origins in some situations. Thi…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP2: thunderbird&lt;/p&gt;
&lt;p&gt;Mozilla Thunderbird is a standalone mail and newsgroup client.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A permission leak could have occurred from a trusted site to an untrusted site via `embed` or `object` elements. This vulnerability affects Firefox &amp;amp;lt; 132, Firefox ESR &amp;amp;lt; 128.4, Firefox ESR &amp;amp;lt; 115.17, Thunderbird &amp;amp;lt; 128.4, and Thunderbird &amp;amp;lt; 132.(CVE-2024-10458)&lt;/p&gt;
&lt;p&gt;An attacker could have caused a use-after-free when accessibility was enabled, leading to a potentially exploitable crash. This vulnerability affects Firefox &amp;amp;lt; 132, Firefox ESR &amp;amp;lt; 128.4, Firefox ESR &amp;amp;lt; 115.17, Thunderbird &amp;amp;lt; 128.4, and Thunderbird &amp;amp;lt; 132.(CVE-2024-10459)&lt;/p&gt;
&lt;p&gt;The origin of an external protocol handler prompt could have been obscured using a data: URL within an `iframe`. This vulnerability affects Firefox &amp;amp;lt; 132, Firefox ESR &amp;amp;lt; 128.4, Thunderbird &amp;amp;lt; 128.4, and Thunderbird &amp;amp;lt; 132.(CVE-2024-10460)&lt;/p&gt;
&lt;p&gt;In multipart/x-mixed-replace responses, `Content-Disposition: attachment` in the response header was not respected and did not force a download, which could allow XSS attacks. This vulnerability affects Firefox &amp;amp;lt; 132, Firefox ESR &amp;amp;lt; 128.4, Thunderbird &amp;amp;lt; 128.4, and Thunderbird &amp;amp;lt; 132.(CVE-2024-10461)&lt;/p&gt;
&lt;p&gt;Truncation of a long URL could have allowed origin spoofing in a permission prompt. This vulnerability affects Firefox &amp;amp;lt; 132, Firefox ESR &amp;amp;lt; 128.4, Thunderbird &amp;amp;lt; 128.4, and Thunderbird &amp;amp;lt; 132.(CVE-2024-10462)&lt;/p&gt;
&lt;p&gt;Video frames could have been leaked between origins in some situations. Thi…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2025-1835</guid>
    </item>
    <item>
      <title>openSUSE-SU-2025:15000-1 — MozillaThunderbird-128.9.2-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15000-1</link>
      <description>&lt;p&gt;MozillaThunderbird-128.9.2-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;MozillaThunderbird-128.9.2-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2025:15000-1</guid>
    </item>
    <item>
      <title>RHSA-2025:4389 — Red Hat Security Advisory: thunderbird security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2025:4389</link>
      <description>&lt;p&gt;thunderbird: Information Disclosure of /tmp directory listing thunderbird: Leak of hashed Window credentials via crafted attachment URL thunderbird: User Interface (UI) Misrepresentation of attachment URL&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;thunderbird: Information Disclosure of /tmp directory listing thunderbird: Leak of hashed Window credentials via crafted attachment URL thunderbird: User Interface (UI) Misrepresentation of attachment URL&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2025:4389</guid>
    </item>
    <item>
      <title>SUSE-SU-2025:1366-1 — Security update for MozillaThunderbird</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2025:1366-1</link>
      <description>&lt;p&gt;Security update for MozillaThunderbird&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for MozillaThunderbird&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2025:1366-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-3522</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-3522</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:22.04:LTS: thunderbird&lt;/p&gt;
&lt;p&gt;Thunderbird processes the X-Mozilla-External-Attachment-URL header to handle attachments which can be hosted externally. When an email is opened, Thunderbird accesses the specified URL to  determine file size, and navigates to it when the user clicks the attachment. Because the URL is not validated or sanitized, it can reference internal resources like chrome:// or SMB share file:// links, potentially leading to hashed Windows credential leakage and opening the door to more serious security issues. This vulnerability was fixed in Thunderbird 137.0.2 and Thunderbird 128.9.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:22.04:LTS: thunderbird&lt;/p&gt;
&lt;p&gt;Thunderbird processes the X-Mozilla-External-Attachment-URL header to handle attachments which can be hosted externally. When an email is opened, Thunderbird accesses the specified URL to  determine file size, and navigates to it when the user clicks the attachment. Because the URL is not validated or sanitized, it can reference internal resources like chrome:// or SMB share file:// links, potentially leading to hashed Windows credential leakage and opening the door to more serious security issues. This vulnerability was fixed in Thunderbird 137.0.2 and Thunderbird 128.9.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-3522</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-0803 — Mozilla Thunderbird und Thunderbird ESR: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0803</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Mozilla Thunderbird ausnutzen, um Informationen preiszugeben und Spoofing-Angriffe durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Mozilla Thunderbird ausnutzen, um Informationen preiszugeben und Spoofing-Angriffe durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0803</guid>
    </item>
  </channel>
</rss>
