FLAT-U2CZHÂ (CVE-2026-22020)
Enabled default configuration In thunderbird
1.7
Low
Ecosystem: RPM
Component: thunderbird
FLAT-D1UZLÂ (CVE-2026-64649)
Server-side request forgery (SSRF) In thunderbird
4.8
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-P5SGGÂ (CVE-2026-64648)
Cached form fields In thunderbird
2.3
Low
Ecosystem: RPM
Component: thunderbird
FLAT-V2S44Â (CVE-2026-64647)
OS Command Injection In thunderbird
1.7
Low
Ecosystem: RPM
Component: thunderbird
FLAT-AT913Â (CVE-2026-64646)
Improper resource allocation In thunderbird
1.7
Low
Ecosystem: RPM
Component: thunderbird
FLAT-65WINÂ (CVE-2026-64645)
Server-side request forgery (SSRF) In thunderbird
4.8
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-4UD76Â (CVE-2026-64644)
Improper resource allocation In thunderbird
1.7
Low
Ecosystem: RPM
Component: thunderbird
FLAT-2ZFIZÂ (CVE-2026-64642)
Improper authorization control for web services In thunderbird
4.8
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-PCATYÂ (CVE-2026-64641)
Inappropriate coding practices In thunderbird
4.6
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-B9VEUÂ (CVE-2026-16408)
Out-of-bounds read In thunderbird
5.9
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-DS387Â (CVE-2026-16406)
Improper authorization control for web services In thunderbird
1.7
Low
Ecosystem: RPM
Component: thunderbird
FLAT-3TRI2Â (CVE-2026-16394)
Security controls bypass or absence In thunderbird
1.3
Low
Ecosystem: RPM
Component: thunderbird
FLAT-FMXDYÂ (CVE-2026-16392)
Lack of data validation - Type confusion In thunderbird
1.3
Low
Ecosystem: RPM
Component: thunderbird
FLAT-QM7XFÂ (CVE-2026-16385)
Inappropriate coding practices In thunderbird
1.3
Low
Ecosystem: RPM
Component: thunderbird
FLAT-G3CKUÂ (CVE-2026-16370)
Improper authorization control for web services In thunderbird
1.2
Low
Ecosystem: RPM
Component: thunderbird
FLAT-8O884Â (CVE-2026-8959)
Security controls bypass or absence In thunderbird
1.3
Low
Ecosystem: RPM
Component: thunderbird
FLAT-X4GEDÂ (CVE-2026-44581)
Server side cross-site scripting In thunderbird
0.6
Low
Ecosystem: RPM
Component: thunderbird
FLAT-36NULÂ (CVE-2026-44576)
Lack of data validation In thunderbird
1.7
Low
Ecosystem: RPM
Component: thunderbird
FLAT-SOFOZÂ (CVE-2026-6786)
Inappropriate coding practices In thunderbird
7.1
High
Ecosystem: RPM
Component: thunderbird
FLAT-2RZWSÂ (CVE-2026-6785)
Inappropriate coding practices In thunderbird
7.1
High
Ecosystem: RPM
Component: thunderbird
FLAT-1WQEAÂ (CVE-2026-4711)
Out-of-bounds read In thunderbird
1.2
Low
Ecosystem: RPM
Component: thunderbird
FLAT-WQD6DÂ (CVE-2025-3877)
Enabled default configuration In thunderbird
1.7
Low
Ecosystem: RPM
Component: thunderbird
FLAT-K04MLÂ (CVE-2025-4092)
Inappropriate coding practices In thunderbird
6.3
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-G0B68Â (CVE-2025-4089)
Server side template injection In thunderbird
4.3
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-CQSFJÂ (CVE-2025-4088)
Cross-site request forgery In thunderbird
0.6
Low
Ecosystem: RPM
Component: thunderbird
FLAT-GA3BQÂ (CVE-2025-4085)
Improper authorization control for web services In thunderbird
2.3
Low
Ecosystem: RPM
Component: thunderbird
FLAT-S90E6Â (CVE-2025-4084)
OS Command Injection In thunderbird
0.2
Low
Ecosystem: RPM
Component: thunderbird
FLAT-5PB6MÂ (CVE-2025-2817)
Excessive privileges In thunderbird
5.6
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-4RWEZÂ (CVE-2025-1943)
Inappropriate coding practices In thunderbird-flatpak-container
6.1
Medium
Ecosystem: RPM
Component: thunderbird-flatpak-container
FLAT-P8QU4Â (CVE-2025-1018)
Spoofing In thunderbird
0.2
Low
Ecosystem: RPM
Component: thunderbird
FLAT-PN1IYÂ (CVE-2024-11705)
Asymmetric denial of service In thunderbird
1.7
Low
Ecosystem: RPM
Component: thunderbird
FLAT-95X2UÂ (CVE-2024-9403)
Inappropriate coding practices In thunderbird
5.2
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-75E3UÂ (CVE-2024-7518)
Clickjacking In thunderbird
4.6
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-FBCARÂ (CVE-2023-25743)
Clickjacking In thunderbird
4.7
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-XLFFFÂ (CVE-2011-3656)
Reflected cross-site scripting (XSS) In thunderbird
1.2
Low
Ecosystem: RPM
Component: thunderbird
FLAT-9YBFWÂ (CVE-2020-15657)
External control of file name or path In thunderbird
4.0
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-I5I0EÂ (CVE-2020-12393)
Server side template injection In thunderbird
4.0
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-EUKYTÂ (CVE-2019-13722)
Improper resource allocation - Buffer overflow In thunderbird
4.9
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-9J8K0Â (CVE-2019-11758)
Improper resource allocation - Buffer overflow In thunderbird
6.1
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-LJ7EOÂ (CVE-2016-5827)
Out-of-bounds read In thunderbird
6.6
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-IF876Â (CVE-2016-5826)
Out-of-bounds read In thunderbird
6.7
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-UNQU7Â (CVE-2016-5825)
Out-of-bounds read In thunderbird
6.6
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-FP6K7Â (CVE-2016-5823)
Improper resource allocation In thunderbird
4.6
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-7QE4AÂ (CVE-2016-2805)
Lack of data validation In thunderbird
7.8
High
Ecosystem: RPM
Component: thunderbird
FLAT-GI48ZÂ (CVE-2016-1930)
Lack of data validation In thunderbird
8.0
High
Ecosystem: RPM
Component: thunderbird
FLAT-IG3IDÂ (CVE-2015-7214)
Missing subresource integrity check In thunderbird
1.2
Low
Ecosystem: RPM
Component: thunderbird
FLAT-1HLX1Â (CVE-2015-7213)
Out-of-bounds read In thunderbird
8.4
High
Ecosystem: RPM
Component: thunderbird
FLAT-JTJECÂ (CVE-2015-7212)
Out-of-bounds read In thunderbird
8.4
High
Ecosystem: RPM
Component: thunderbird
FLAT-S3DTOÂ (CVE-2015-7205)
Out-of-bounds read In thunderbird
6.7
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-TSIVDÂ (CVE-2015-7198)
Improper resource allocation - Buffer overflow In thunderbird
1.7
Low
Ecosystem: RPM
Component: thunderbird
FLAT-LDUJ6Â (CVE-2015-7197)
Improper authorization control for web services In thunderbird
1.3
Low
Ecosystem: RPM
Component: thunderbird
FLAT-Y2COGÂ (CVE-2015-7189)
Race condition In thunderbird
2.7
Low
Ecosystem: RPM
Component: thunderbird
FLAT-B46REÂ (CVE-2015-7175)
Out-of-bounds read In thunderbird
6.7
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-OFBQ6Â (CVE-2015-4522)
Out-of-bounds read In thunderbird
7.9
High
Ecosystem: RPM
Component: thunderbird
FLAT-5HT8VÂ (CVE-2015-4521)
Inappropriate coding practices In thunderbird
4.9
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-5JSJIÂ (CVE-2015-4519)
Server-side request forgery (SSRF) In thunderbird
0.5
Low
Ecosystem: RPM
Component: thunderbird
FLAT-FGMM7Â (CVE-2015-4517)
Lack of data validation In thunderbird
7.8
High
Ecosystem: RPM
Component: thunderbird
FLAT-JWT4AÂ (CVE-2015-4509)
Inappropriate coding practices In thunderbird
5.9
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-HK964Â (CVE-2015-4488)
Out-of-bounds read In thunderbird
6.8
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-BXWDHÂ (CVE-2015-2741)
Insecure digital certificates In thunderbird
3.8
Low
Ecosystem: RPM
Component: thunderbird
FLAT-0J2O6Â (CVE-2015-2740)
Improper resource allocation - Buffer overflow In thunderbird
1.7
Low
Ecosystem: RPM
Component: thunderbird
FLAT-NJFT5Â (CVE-2015-2739)
Inappropriate coding practices In thunderbird
1.7
Low
Ecosystem: RPM
Component: thunderbird
FLAT-J1EAGÂ (CVE-2015-2736)
Out-of-bounds read In thunderbird
6.8
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-E5GVKÂ (CVE-2015-2735)
Out-of-bounds read In thunderbird
6.7
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-C7RVCÂ (CVE-2015-2725)
Inappropriate coding practices In thunderbird
6.7
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-U8R72Â (CVE-2015-2724)
Inappropriate coding practices In thunderbird
8.0
High
Ecosystem: RPM
Component: thunderbird
FLAT-0X2J9Â (CVE-2015-2710)
Out-of-bounds read In thunderbird
8.2
High
Ecosystem: RPM
Component: thunderbird
FLAT-V7HNUÂ (CVE-2015-2708)
Inappropriate coding practices In thunderbird
7.9
High
Ecosystem: RPM
Component: thunderbird
FLAT-VW6POÂ (CVE-2015-0816)
XAML injection In thunderbird
5.9
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-F04YUÂ (CVE-2015-0807)
Cross-site request forgery In thunderbird
1.3
Low
Ecosystem: RPM
Component: thunderbird
FLAT-QZYRDÂ (CVE-2014-8639)
Session Fixation In thunderbird
1.7
Low
Ecosystem: RPM
Component: thunderbird
FLAT-Y4CNAÂ (CVE-2014-8638)
Cross-site request forgery In thunderbird
1.3
Low
Ecosystem: RPM
Component: thunderbird
FLAT-FUWHRÂ (CVE-2014-1593)
Improper resource allocation - Buffer overflow In thunderbird
8.2
High
Ecosystem: RPM
Component: thunderbird
FLAT-70ZL9Â (CVE-2014-1587)
Inappropriate coding practices In thunderbird
7.1
High
Ecosystem: RPM
Component: thunderbird
FLAT-NEAJNÂ (CVE-2014-1576)
Out-of-bounds read In thunderbird
7.0
High
Ecosystem: RPM
Component: thunderbird
FLAT-PRY8TÂ (CVE-2014-1567)
Inappropriate coding practices In thunderbird
8.4
High
Ecosystem: RPM
Component: thunderbird
FLAT-7ZKMFÂ (CVE-2014-1562)
Lack of data validation In thunderbird
6.9
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-6NLTCÂ (CVE-2014-1557)
Remote File Inclusion In thunderbird
9.0
Critical
Ecosystem: RPM
Component: thunderbird
FLAT-G1T5LÂ (CVE-2014-1538)
Inappropriate coding practices In thunderbird
8.3
High
Ecosystem: RPM
Component: thunderbird
FLAT-TAD00Â (CVE-2014-1531)
Inappropriate coding practices In thunderbird
6.6
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-BNC1IÂ (CVE-2014-1523)
Out-of-bounds read In thunderbird
7.8
High
Ecosystem: RPM
Component: thunderbird
FLAT-1INTVÂ (CVE-2014-1518)
Inappropriate coding practices In thunderbird
6.7
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-H96XWÂ (CVE-2014-1513)
Improper resource allocation - Buffer overflow In thunderbird
4.2
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-8FJO6Â (CVE-2014-1512)
Improper resource allocation In thunderbird
6.1
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-MFD38Â (CVE-2014-1510)
Server side template injection In thunderbird
9.0
Critical
Ecosystem: RPM
Component: thunderbird
FLAT-8NYF4Â (CVE-2014-1508)
Out-of-bounds read In thunderbird
4.9
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-X1DLBÂ (CVE-2014-1505)
Sensitive information sent insecurely In thunderbird
2.7
Low
Ecosystem: RPM
Component: thunderbird
FLAT-FUK4VÂ (CVE-2014-1497)
Out-of-bounds read In thunderbird
6.8
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-2FJI5Â (CVE-2014-2018)
Reflected cross-site scripting (XSS) In thunderbird
1.3
Low
Ecosystem: RPM
Component: thunderbird
FLAT-TI8LPÂ (CVE-2013-6674)
Reflected cross-site scripting (XSS) In thunderbird
0.6
Low
Ecosystem: RPM
Component: thunderbird
FLAT-1Z87MÂ (CVE-2014-1486)
Inappropriate coding practices In thunderbird
9.1
Critical
Ecosystem: RPM
Component: thunderbird
FLAT-FK14QÂ (CVE-2014-1482)
Out-of-bounds read In thunderbird
8.0
High
Ecosystem: RPM
Component: thunderbird
FLAT-16NTSÂ (CVE-2014-1479)
Improper authorization control for web services In thunderbird
2.7
Low
Ecosystem: RPM
Component: thunderbird
FLAT-IV21DÂ (CVE-2014-1477)
Inappropriate coding practices In thunderbird
6.8
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-O7ZDAÂ (CVE-2013-6671)
Lack of data validation In thunderbird
6.7
Medium
Ecosystem: RPM
Component: thunderbird
FLAT-KTZTLÂ (CVE-2013-5614)
Security controls bypass or absence In thunderbird
1.3
Low
Ecosystem: RPM
Component: thunderbird
FLAT-25PZ1Â (CVE-2013-5613)
Inappropriate coding practices In thunderbird
8.4
High
Ecosystem: RPM
Component: thunderbird
FLAT-VAXHTÂ (CVE-2013-5604)
Inappropriate coding practices In thunderbird
8.2
High
Ecosystem: RPM
Component: thunderbird
FLAT-9ICI8Â (CVE-2013-5602)
Inappropriate coding practices In thunderbird
7.0
High
Ecosystem: RPM
Component: thunderbird
FLAT-GLBWJÂ (CVE-2013-5600)
Remote command execution In thunderbird
9.1
Critical
Ecosystem: RPM
Component: thunderbird