CVE-2026-92238

A maliciously constructed mail header could lead to multiple fields being parsed as one, or potential memory safety violations. This vulnerability was fixed in Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
CVSS

No CVSS.

Configurations

No configuration.

History

16 Sep 2026, 15:19

Type Values Removed Values Added
References
  • () https://www.mozilla.org/security/advisories/mfsa2026-96/ -
Summary (en) A maliciously constructed mail header could lead to multiple fields being parsed as one, or potential memory safety violations. This vulnerability was fixed in Thunderbird 156 and Thunderbird 140.16. (en) A maliciously constructed mail header could lead to multiple fields being parsed as one, or potential memory safety violations. This vulnerability was fixed in Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.

Information

Published : 2026-09-15 20:19

Updated : 2026-09-16 19:34


NVD link : CVE-2026-92238

Mitre link : CVE-2026-92238

CVE.ORG link : CVE-2026-92238


JSON object : View

Products Affected

No product.

CWE

No CWE.