GHSA-5g22-6w6r-pr2m
GitHub Security Advisory
⚠ Unreviewed
HIGH
Has CVE
Advisory Details
Thunderbird cached CORS preflight responses across IP address changes. This allowed circumventing CORS with DNS rebinding. This vulnerability affects Firefox < 141, Firefox ESR < 140.1, Thunderbird < 141, and Thunderbird < 140.1.
Related CVEs
Key Information
7.5
/10
Dataset
Last updated: July 25, 2025 6:37 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.