VDB
CNVD-2026-11794
CNVD-2026-11794
PUBLISHED
CVSS 4.300000190734863 MEDIUM
Mozilla Thunderbird是美国Mozilla基金会的一套从Mozilla Application Suite独立出来的电子邮件客户端软件。该软件支持IMAP、POP邮件协议以及HTML邮件格式。 Mozilla Thunderbird存在信息泄露漏洞,攻击者可利用该漏洞获取敏感信息。
Risk Scores
CVSS 3.1
4.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mozilla | Thunderbird | 140.7.1, 147.0.1 |
Exploit Intelligence
- https://lists.debian.org/debian-lts-announce/2026/02/msg00005.html (circl)
- https://bugzilla.mozilla.org/show_bug.cgi?id=1881530 (circl)
- https://www.mozilla.org/security/advisories/mfsa2026-07/ (circl)
- https://www.mozilla.org/security/advisories/mfsa2026-08/ (circl)
- CIRCL seen: CVE-2026-0818 (circl-sighting)
- CIRCL seen: CVE-2026-0818 (circl-sighting)
- CIRCL seen: CVE-2026-0818 (circl-sighting)
- 2026.xml (github-poc)
- 2026.xml (github-poc)
- 2026.xml (github-poc)
…and 1 more exploits
Timeline
- Jan 28, 2026 CVE Published
- Jan 28, 2026 PoC Published
- Jan 28, 2026 PoC Published
- Feb 4, 2026 PoC Published
- Feb 5, 2026 CVE ID Reserved