<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 11:34:34 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-10508</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-10508</link>
      <description>bdu:2025-10508</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-10508</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0358 — De multiples vulnérabilités ont été découvertes dans les produits Mozilla. Certaines d'entre elles permettent à un atta…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0358</link>
      <description>certfr-2025-avi-0358</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0358</guid>
    </item>
    <item>
      <title>EUVD-2026-290699</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-290699</link>
      <description>EUVD-2026-290699</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-290699</guid>
    </item>
    <item>
      <title>fkie_cve-2025-4082</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-4082</link>
      <description>&lt;p&gt;Modification of specific WebGL shader attributes could trigger an out-of-bounds read, which, when chained with other vulnerabilities, could be used to escalate privileges.
*This bug only affects Thunderbird for macOS. Other versions of Thunderbird are unaffected.*. This vulnerability was fixed in Firefox 138, Firefox ESR 128.10, Firefox ESR 115.23, Thunderbird 138, and Thunderbird 128.10.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Modification of specific WebGL shader attributes could trigger an out-of-bounds read, which, when chained with other vulnerabilities, could be used to escalate privileges.
*This bug only affects Thunderbird for macOS. Other versions of Thunderbird are unaffected.*. This vulnerability was fixed in Firefox 138, Firefox ESR 128.10, Firefox ESR 115.23, Thunderbird 138, and Thunderbird 128.10.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-4082</guid>
    </item>
    <item>
      <title>GHSA-xhhw-j3h4-3x9r</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-xhhw-j3h4-3x9r</link>
      <description>&lt;p&gt;Modification of specific WebGL shader attributes could trigger an out-of-bounds read, which, when chained with other vulnerabilities, could be used to escalate privileges.
*This bug only affects Firefox for macOS. Other versions of Firefox are unaffected.* This vulnerability affects Firefox &amp;lt; 138, Firefox ESR &amp;lt; 128.10, Firefox ESR &amp;lt; 115.23, Thunderbird &amp;lt; 138, and Thunderbird ESR &amp;lt; 128.10.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Modification of specific WebGL shader attributes could trigger an out-of-bounds read, which, when chained with other vulnerabilities, could be used to escalate privileges.
*This bug only affects Firefox for macOS. Other versions of Firefox are unaffected.* This vulnerability affects Firefox &amp;lt; 138, Firefox ESR &amp;lt; 128.10, Firefox ESR &amp;lt; 115.23, Thunderbird &amp;lt; 138, and Thunderbird ESR &amp;lt; 128.10.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-xhhw-j3h4-3x9r</guid>
    </item>
    <item>
      <title>OESA-2025-2557 — thunderbird security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2025-2557</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP2: thunderbird&lt;/p&gt;
&lt;p&gt;Mozilla Thunderbird is a standalone mail and newsgroup client.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;This vulnerability affects Firefox versions prior to 143 and Firefox ESR versions prior to 140.3. Specific vulnerability type and impact details require further confirmation.(CVE-2025-10527)&lt;/p&gt;
&lt;p&gt;This vulnerability affects Firefox &amp;amp;lt; 143 and Firefox ESR &amp;amp;lt; 140.3.(CVE-2025-10528)&lt;/p&gt;
&lt;p&gt;This vulnerability affects Firefox versions earlier than 143 and Firefox ESR versions earlier than 140.3. The vulnerability may lead to security bypass or other security issues.(CVE-2025-10529)&lt;/p&gt;
&lt;p&gt;This vulnerability affects Firefox &amp;amp;lt; 143 and Firefox ESR &amp;amp;lt; 140.3.(CVE-2025-10532)&lt;/p&gt;
&lt;p&gt;This vulnerability affects Firefox &amp;amp;lt; 143, Firefox ESR &amp;amp;lt; 115.28, and Firefox ESR &amp;amp;lt; 140.3. Specific vulnerability details require further analysis.(CVE-2025-10533)&lt;/p&gt;
&lt;p&gt;This vulnerability affects Firefox &amp;amp;lt; 143, Firefox ESR &amp;amp;lt; 140.3, Thunderbird &amp;amp;lt; 143, and Thunderbird &amp;amp;lt; 140.3.(CVE-2025-10536)&lt;/p&gt;
&lt;p&gt;Memory safety bugs present in Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox 142 and Thunderbird 142. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox &amp;amp;lt; 143 and Firefox ESR &amp;amp;lt; 140.3.(CVE-2025-10537)&lt;/p&gt;
&lt;p&gt;Use-after-free vulnerability in MediaTrackGraphImpl::GetInstance(). This vulnerability affects Firefox &amp;amp;lt; 144, Firefox ESR &amp;amp;lt; 140.4, Thunderbird &amp;amp;lt; 144, and Thunderbird &amp;amp;lt; 140.4.(CV…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP2: thunderbird&lt;/p&gt;
&lt;p&gt;Mozilla Thunderbird is a standalone mail and newsgroup client.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;This vulnerability affects Firefox versions prior to 143 and Firefox ESR versions prior to 140.3. Specific vulnerability type and impact details require further confirmation.(CVE-2025-10527)&lt;/p&gt;
&lt;p&gt;This vulnerability affects Firefox &amp;amp;lt; 143 and Firefox ESR &amp;amp;lt; 140.3.(CVE-2025-10528)&lt;/p&gt;
&lt;p&gt;This vulnerability affects Firefox versions earlier than 143 and Firefox ESR versions earlier than 140.3. The vulnerability may lead to security bypass or other security issues.(CVE-2025-10529)&lt;/p&gt;
&lt;p&gt;This vulnerability affects Firefox &amp;amp;lt; 143 and Firefox ESR &amp;amp;lt; 140.3.(CVE-2025-10532)&lt;/p&gt;
&lt;p&gt;This vulnerability affects Firefox &amp;amp;lt; 143, Firefox ESR &amp;amp;lt; 115.28, and Firefox ESR &amp;amp;lt; 140.3. Specific vulnerability details require further analysis.(CVE-2025-10533)&lt;/p&gt;
&lt;p&gt;This vulnerability affects Firefox &amp;amp;lt; 143, Firefox ESR &amp;amp;lt; 140.3, Thunderbird &amp;amp;lt; 143, and Thunderbird &amp;amp;lt; 140.3.(CVE-2025-10536)&lt;/p&gt;
&lt;p&gt;Memory safety bugs present in Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox 142 and Thunderbird 142. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox &amp;amp;lt; 143 and Firefox ESR &amp;amp;lt; 140.3.(CVE-2025-10537)&lt;/p&gt;
&lt;p&gt;Use-after-free vulnerability in MediaTrackGraphImpl::GetInstance(). This vulnerability affects Firefox &amp;amp;lt; 144, Firefox ESR &amp;amp;lt; 140.4, Thunderbird &amp;amp;lt; 144, and Thunderbird &amp;amp;lt; 140.4.(CV…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2025-2557</guid>
    </item>
    <item>
      <title>openSUSE-SU-2025:15042-1 — MozillaThunderbird-128.10.0-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15042-1</link>
      <description>&lt;p&gt;MozillaThunderbird-128.10.0-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;MozillaThunderbird-128.10.0-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2025:15042-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2025:1506-1 — Security update for MozillaThunderbird</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2025:1506-1</link>
      <description>&lt;p&gt;Security update for MozillaThunderbird&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for MozillaThunderbird&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2025:1506-1</guid>
    </item>
    <item>
      <title>Withdrawn: UBUNTU-CVE-2025-4082</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-4082</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:18.04:LTS: mozjs52, Ubuntu:Pro:18.04:LTS: mozjs38, Ubuntu:20.04:LTS: firefox, Ubuntu:20.04:LTS: mozjs52, Ubuntu:20.04:LTS: mozjs68, Ubuntu:20.04:LTS: thunderbird, Ubuntu:22.04:LTS: mozjs102, Ubuntu:22.04:LTS: mozjs78, Ubuntu:22.04:LTS: mozjs91, Ubuntu:22.04:LTS: thunderbird and 4 more&lt;/p&gt;
&lt;p&gt;Modification of specific WebGL shader attributes could trigger an out-of-bounds read, which, when chained with other vulnerabilities, could be used to escalate privileges. *This bug only affects Firefox for macOS. Other versions of Firefox are unaffected.* This vulnerability affects Firefox &amp;lt; 138, Firefox ESR &amp;lt; 128.10, Firefox ESR &amp;lt; 115.23, Thunderbird &amp;lt; 138, and Thunderbird ESR &amp;lt; 128.10.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:18.04:LTS: mozjs52, Ubuntu:Pro:18.04:LTS: mozjs38, Ubuntu:20.04:LTS: firefox, Ubuntu:20.04:LTS: mozjs52, Ubuntu:20.04:LTS: mozjs68, Ubuntu:20.04:LTS: thunderbird, Ubuntu:22.04:LTS: mozjs102, Ubuntu:22.04:LTS: mozjs78, Ubuntu:22.04:LTS: mozjs91, Ubuntu:22.04:LTS: thunderbird and 4 more&lt;/p&gt;
&lt;p&gt;Modification of specific WebGL shader attributes could trigger an out-of-bounds read, which, when chained with other vulnerabilities, could be used to escalate privileges. *This bug only affects Firefox for macOS. Other versions of Firefox are unaffected.* This vulnerability affects Firefox &amp;lt; 138, Firefox ESR &amp;lt; 128.10, Firefox ESR &amp;lt; 115.23, Thunderbird &amp;lt; 138, and Thunderbird ESR &amp;lt; 128.10.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-4082</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-0901 — Mozilla Firefox, Firefox ESR, Thunderbird and Thunderbird ESR: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0901</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellenin Mozilla Firefox, Firefox ESR, Thunderbird und Thunderbird ESR ausnutzen, um seine Privilegien zu erhöhen, beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, einen Denial-of-Service-Zustand herbeizuführen, vertrauliche Informationen preiszugeben, Daten zu manipulieren oder andere nicht spezifizierte Angriffe durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellenin Mozilla Firefox, Firefox ESR, Thunderbird und Thunderbird ESR ausnutzen, um seine Privilegien zu erhöhen, beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, einen Denial-of-Service-Zustand herbeizuführen, vertrauliche Informationen preiszugeben, Daten zu manipulieren oder andere nicht spezifizierte Angriffe durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0901</guid>
    </item>
  </channel>
</rss>
