SEPTEMBER 24, 2026
Live Feed
Back to database
Case File

CVE-2026-92239

HIGH · CVSS 8.1 EPSS 0.45%

Source: NVD + CISA KEV + EPSS · Published 2026-09-15 · Last synced 2026-09-24

CyberRota Analysis

AI-Generated

A vulnerability exists in unspecified products that allows a maliciously crafted IMAP line to trigger an out-of-bounds buffer read, potentially leading to information disclosure or application crashes. Organizations using affected versions of Thunderbird should prioritize applying the updates in Thunderbird 156 and Thunderbird 140.16 to mitigate this risk.

CVE
CVE-2026-92239
Severity
HIGH
CVSS
8.1
EPSS
0.45%

Original NVD Description

A maliciously constructed IMAP line could cause an out-of-bounds buffer read. This vulnerability was fixed in Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.

Related CVEs

Other vulnerabilities affecting the same vendor(s)