CVE-2022-3034

CVSS v3.1 4.3 (Medium)
43% Progress
EPSS 0.09 % (39th)
0.09% Progress
Affected Products 1
Advisories 15

When receiving an HTML email that specified to load an <code>iframe</code> element from a remote location, a request to the remote document was sent. However, Thunderbird didn't display the document. This vulnerability affects Thunderbird < 102.2.1 and Thunderbird < 91.13.1.

Weaknesses
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
CVE Status
PUBLISHED
CNA
Mozilla Corporation
Published Date
2022-12-22 20:15:38
(21 months ago)
Updated Date
2022-12-30 22:14:35
(20 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Thunderbird prior 91.31.1 version cpe:2.3:a:mozilla:thunderbird < 91.31.1
  Mozilla Thunderbird from 102.0 version and prior 102.2.1 version cpe:2.3:a:mozilla:thunderbird >= 102.0 < 102.2.1
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...