AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-12365

MEDIUM · CVSS 6.5 EPSS 3.16%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-10-18 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2018-12365
Severity
MEDIUM
CVSS
6.5
EPSS
3.16%
Firefox

Original NVD Description

A compromised IPC child process can escape the content sandbox and list the names of arbitrary files on the file system without user consent or interaction. This could result in exposure of private local files. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.