Tracker / CVE-2025-11719
CVE-2025-11719
Critical 9.8
Starting in Thunderbird 143, the use of the native messaging API by web extensions on Windows could lead to crashes caused by use-after-free memory corruption. This vulnerability was fixed in Firefox 144 and Thunderbird 144.
Affected products and versions
| mozilla | firefox · 143.0 → 144.0 |
|---|---|
| mozilla | thunderbird · 143.0 → 144.0 |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.