Description
Multiple vulnerabilities were found in Mozilla Thunderbird ESR. Malicious users can exploit these vulnerabilities to obtain sensitive information, bypass security restrictions, execute arbitrary code, cause denial of service.
Below is a complete list of vulnerabilities:
- Information disclosure vulnerability in the Audio/Video component can be exploited to obtain sensitive information.
- Security vulnerability in the WebRTC: Networking component can be exploited to bypass security restrictions.
- A remote code execution vulnerability in Firefox ESR 115 can be exploited remotely to execute arbitrary code.
- A remote code execution vulnerability in Firefox ESR 140 can be exploited remotely to execute arbitrary code.
Original advisories
Exploitation
Related products
CVE list
- CVE-2026-7320 critical
- CVE-2026-7321 critical
- CVE-2026-7322 high
- CVE-2026-7323 high
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!