[Git][security-tracker-team/security-tracker][master] Add CVE-2026-0818/thunderbird from mfsa2026-08

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jan 28 09:41:13 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f87381e3 by Salvatore Bonaccorso at 2026-01-28T10:40:41+01:00
Add CVE-2026-0818/thunderbird from mfsa2026-08

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -108,7 +108,8 @@ CVE-2026-0832 (The New User Approve plugin for WordPress is vulnerable to unauth
 CVE-2026-0825 (The Database for Contact Form 7, WPforms, Elementor forms plugin for W ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-0818 (CSS-based exfiltration of the content from partially encrypted emails  ...)
-	TODO: check
+	- thunderbird <unfixed>
+	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-08/#CVE-2026-0818
 CVE-2025-9082 (The WPBITS Addons For Elementor plugin for WordPress is vulnerable to  ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2025-8072 (The Target Video Easy Publish plugin for WordPress is vulnerable to St ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f87381e36afdab7dea2fad2d777a272e2245be47

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f87381e36afdab7dea2fad2d777a272e2245be47
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260128/59b4c01a/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list