CVE-2026-14899
Last modified
CVE-2026-14899 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. The code to parse MIME headers for display when forwarding a message (if the setting to view all headers was enabled) had an off-by-one error, allowing a single byte to be read from the memory after the buffer for the headers, and potentially crashing Thunderbird. This vulnerability was fixed in Thunderbird 153 and Thunderbird 140.13.. EPSS estimates a 0.26% chance of exploitation in the next 30 days.
Description
The code to parse MIME headers for display when forwarding a message (if the setting to view all headers was enabled) had an off-by-one error, allowing a single byte to be read from the memory after the buffer for the headers, and potentially crashing Thunderbird. This vulnerability was fixed in Thunderbird 153 and Thunderbird 140.13.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Mozilla | Thunderbird | < 140.13.0 |
References
- https://bugzilla.mozilla.org/show_bug.cgi?id=2046137Permissions Required
- https://www.mozilla.org/security/advisories/mfsa2026-71/Vendor Advisory
- https://www.mozilla.org/security/advisories/mfsa2026-72/Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-14899?
How severe is CVE-2026-14899?
How do I fix CVE-2026-14899?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-14892Tanium addressed an improper access controls vulnerability i…4.3
- CVE-2026-14893IBM Observability with Instana (Agent) Build 1.0.303 through…7.3
- CVE-2026-14894The Super Forms – Drag & Drop Form Builder plugin for WordPr…9.8
- CVE-2026-14895String::Util versions before 1.36 for Perl are susceptible t…7.5
- CVE-2026-14896HashiCorp Nomad and Nomad Enterprise are vulnerable to a cro…4.2
- CVE-2026-14898The OpenAI Codex desktop app for macOS rendered remote image…6.5
- CVE-2026-1490The Spam protection, Anti-Spam, FireWall by CleanTalk plugin…9.8
- CVE-2026-14900The Cost Calculator Builder PRO plugin for WordPress is vuln…9.8
- CVE-2026-14902An open redirect in Ivanti Xtraction before version 2026.2.1…6.1
- CVE-2026-14903Path traversal in Ivanti Xtraction before version 2026.2.1 …6.5
- CVE-2026-14904AWS Research and Engineering Studio (RES) is an open-source …7.1
- CVE-2026-14906Pages with malicious titles could potentially allow saved PD…5.3
Are you affected by CVE-2026-14899?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
