ZeroHour

CVE-2026-92238

CVSS
EPSS
Published
()
Modified
Description

A maliciously constructed mail header could lead to multiple fields being parsed as one, or potential memory safety violations. This vulnerability was fixed in Thunderbird 156 and Thunderbird 140.16.

In the news

No ingested article mentions this CVE yet.