CVE Published: 08/12/2021 |
CVE Updated: 04/08/2024 |
CVE Year: 2021 Source: mozilla |
Vendor: Mozilla |
Product: Thunderbird Status : PUBLISHED
CVE-2021-43528 Description
Thunderbird unexpectedly enabled JavaScript in the composition area. The JavaScript execution context was limited to this area and did not receive chrome-level privileges, but could be used as a stepping stone to further an attack with other vulnerabilities. This vulnerability affects Thunderbird < 91.4.0.