GHSA-c839-4fpv-9xp7
GitHub Security Advisory
⚠ Unreviewed
HIGH
Has CVE
Advisory Details
During the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated within the encrypted session. This vulnerability affects Thunderbird < 78.7.
Related CVEs
Key Information
7.5
/10
Dataset
Last updated: November 26, 2025 6:30 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.