CVE-2025-4083

CRITICAL

Thunderbird <138 - Sandbox Escape

Title source: llm
STIX 2.1

Description

A process isolation vulnerability in Thunderbird stemmed from improper handling of javascript: URIs, which could allow content to execute in the top-level document's process instead of the intended frame, potentially enabling a sandbox escape. This vulnerability was fixed in Firefox 138, Firefox ESR 128.10, Firefox ESR 115.23, Thunderbird 138, and Thunderbird 128.10.

Scores

CVSS v3 9.1
EPSS 0.0041
EPSS Percentile 61.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-653
Status published
Products (9)
mozilla/firefox < 115.23
mozilla/firefox < 138.0
Mozilla/Firefox 115.23 - 115.*
Mozilla/Firefox 128.10 - 128.*
Mozilla/Firefox 138
mozilla/thunderbird < 128.10.0
mozilla/thunderbird < 138.0
Mozilla/Thunderbird 128.10 - 128.*
Mozilla/Thunderbird 138
Published Apr 29, 2025
Tracked Since Feb 18, 2026