[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2026-4371":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T08:55:32.481Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":19,"aliases":20,"duplicate_of":9,"upstream":21,"downstream":22,"duplicates":59,"related":60,"reserved_at":9,"published_at":63,"modified_at":64,"state":65,"summary":66,"references_raw":75,"kevs":91,"epss":92,"epss_history":95,"metrics":312,"affected":320},"CVE-2026-4371","A malicious mail server could send malformed strings with negative lengths, causing the parser to read memory outside the buffer. If a mail server or connection to a mail server were compromised, an attacker could cause the parser to malfunction, potentially crashing Thunderbird or leaking sensitive data. This vulnerability was fixed in Thunderbird 149 and Thunderbird 140.9.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-126","Buffer Over-read","The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.","weakness","Draft","Variant",[],[],[],[],[23,25,27,29,31,33,35,37,39,41,43,45,47,49,51,53,55,57],{"_key":24},"DLA-4511-1",{"_key":26},"DSA-6179-1",{"_key":28},"OPENSUSE-SU-2026:10447-1",{"_key":30},"SUSE-SU-2026:1163-1",{"_key":32},"UBUNTU-CVE-2026-4371",{"_key":34},"DEBIAN-CVE-2026-4371",{"_key":36},"RHSA-2026:6188",{"_key":38},"RHSA-2026:6342",{"_key":40},"RHSA-2026:6917",{"_key":42},"RHSA-2026:8284",{"_key":44},"RHSA-2026:8285",{"_key":46},"RHSA-2026:8286",{"_key":48},"RHSA-2026:8287",{"_key":50},"RHSA-2026:8288",{"_key":52},"RHSA-2026:8289",{"_key":54},"RHSA-2026:8290",{"_key":56},"RHSA-2026:8315",{"_key":58},"RHSA-2026:8850",[],[61,62],{"_key":28},{"_key":30},"2026-03-24T20:27:15.198Z","2026-04-13T13:51:25.535Z","Modified",{"cisa_kev":67,"cisa_ransomware":67,"cisa_vendor":9,"epss_severity":68,"epss_score":69,"severity":70,"severity_score":71,"severity_version":72,"severity_source":73,"severity_vector":74,"severity_status":65},false,"low",0.00064,"high",7.4,"v3.1","cve.org","CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H",[76,82,87],{"url":77,"sources":78,"tags":80},"https://bugzilla.mozilla.org/show_bug.cgi?id=2023493",[73,79],"nvd",[81],"Permissions Required",{"url":83,"sources":84,"tags":85},"https://www.mozilla.org/security/advisories/mfsa2026-23/",[73,79],[86],"Vendor Advisory",{"url":88,"sources":89,"tags":90},"https://www.mozilla.org/security/advisories/mfsa2026-24/",[73,79],[86],[],{"date":93,"score":69,"percentile":94},"2026-06-04",0.20011,[96,100,104,107,111,114,118,121,124,127,130,133,136,139,142,145,148,151,154,157,160,163,166,169,172,175,178,181,184,186,189,192,196,199,202,205,208,211,214,217,220,223,226,229,232,235,238,241,244,247,250,253,255,258,261,264,267,269,272,275,278,281,284,287,290,293,296,299,302,305,308,311],{"date":97,"score":98,"percentile":99},"2026-03-25",0.00017,0.03927,{"date":101,"score":102,"percentile":103},"2026-03-26",0.0004,0.12328,{"date":105,"score":102,"percentile":106},"2026-03-27",0.12355,{"date":108,"score":109,"percentile":110},"2026-03-28",0.00043,0.13113,{"date":112,"score":109,"percentile":113},"2026-03-29",0.13077,{"date":115,"score":116,"percentile":117},"2026-03-30",0.00056,0.17531,{"date":119,"score":116,"percentile":120},"2026-03-31",0.17517,{"date":122,"score":116,"percentile":123},"2026-04-01",0.17553,{"date":125,"score":116,"percentile":126},"2026-04-02",0.17716,{"date":128,"score":116,"percentile":129},"2026-04-03",0.17736,{"date":131,"score":116,"percentile":132},"2026-04-04",0.17763,{"date":134,"score":116,"percentile":135},"2026-04-05",0.17729,{"date":137,"score":116,"percentile":138},"2026-04-06",0.17502,{"date":140,"score":116,"percentile":141},"2026-04-07",0.1749,{"date":143,"score":116,"percentile":144},"2026-04-08",0.17579,{"date":146,"score":116,"percentile":147},"2026-04-09",0.1764,{"date":149,"score":116,"percentile":150},"2026-04-10",0.1766,{"date":152,"score":116,"percentile":153},"2026-04-11",0.17659,{"date":155,"score":116,"percentile":156},"2026-04-12",0.17612,{"date":158,"score":116,"percentile":159},"2026-04-13",0.1756,{"date":161,"score":116,"percentile":162},"2026-04-14",0.17476,{"date":164,"score":116,"percentile":165},"2026-04-15",0.17516,{"date":167,"score":116,"percentile":168},"2026-04-16",0.17505,{"date":170,"score":116,"percentile":171},"2026-04-17",0.17508,{"date":173,"score":116,"percentile":174},"2026-04-18",0.17514,{"date":176,"score":116,"percentile":177},"2026-04-19",0.17463,{"date":179,"score":116,"percentile":180},"2026-04-20",0.17447,{"date":182,"score":116,"percentile":183},"2026-04-21",0.17548,{"date":185,"score":116,"percentile":156},"2026-04-22",{"date":187,"score":116,"percentile":188},"2026-04-23",0.17629,{"date":190,"score":116,"percentile":191},"2026-04-24",0.17458,{"date":193,"score":194,"percentile":195},"2026-04-25",0.00061,0.18945,{"date":197,"score":194,"percentile":198},"2026-04-26",0.1892,{"date":200,"score":194,"percentile":201},"2026-04-27",0.18908,{"date":203,"score":194,"percentile":204},"2026-04-28",0.18871,{"date":206,"score":194,"percentile":207},"2026-04-29",0.18878,{"date":209,"score":194,"percentile":210},"2026-04-30",0.18847,{"date":212,"score":194,"percentile":213},"2026-05-01",0.18833,{"date":215,"score":194,"percentile":216},"2026-05-02",0.18858,{"date":218,"score":194,"percentile":219},"2026-05-03",0.18823,{"date":221,"score":194,"percentile":222},"2026-05-04",0.18766,{"date":224,"score":194,"percentile":225},"2026-05-05",0.18754,{"date":227,"score":194,"percentile":228},"2026-05-06",0.18748,{"date":230,"score":194,"percentile":231},"2026-05-07",0.18838,{"date":233,"score":194,"percentile":234},"2026-05-08",0.18867,{"date":236,"score":194,"percentile":237},"2026-05-09",0.18941,{"date":239,"score":194,"percentile":240},"2026-05-10",0.18926,{"date":242,"score":194,"percentile":243},"2026-05-11",0.18903,{"date":245,"score":194,"percentile":246},"2026-05-12",0.18939,{"date":248,"score":194,"percentile":249},"2026-05-13",0.18993,{"date":251,"score":194,"percentile":252},"2026-05-14",0.19042,{"date":254,"score":194,"percentile":252},"2026-05-15",{"date":256,"score":194,"percentile":257},"2026-05-16",0.19053,{"date":259,"score":194,"percentile":260},"2026-05-17",0.19035,{"date":262,"score":194,"percentile":263},"2026-05-18",0.18992,{"date":265,"score":194,"percentile":266},"2026-05-19",0.18983,{"date":268,"score":194,"percentile":263},"2026-05-20",{"date":270,"score":194,"percentile":271},"2026-05-21",0.18973,{"date":273,"score":194,"percentile":274},"2026-05-22",0.19079,{"date":276,"score":194,"percentile":277},"2026-05-23",0.19073,{"date":279,"score":194,"percentile":280},"2026-05-24",0.1902,{"date":282,"score":194,"percentile":283},"2026-05-25",0.19002,{"date":285,"score":194,"percentile":286},"2026-05-26",0.18998,{"date":288,"score":194,"percentile":289},"2026-05-27",0.19083,{"date":291,"score":194,"percentile":292},"2026-05-28",0.19222,{"date":294,"score":194,"percentile":295},"2026-05-29",0.19286,{"date":297,"score":194,"percentile":298},"2026-05-30",0.1928,{"date":300,"score":69,"percentile":301},"2026-05-31",0.20014,{"date":303,"score":69,"percentile":304},"2026-06-01",0.19997,{"date":306,"score":69,"percentile":307},"2026-06-02",0.19994,{"date":309,"score":69,"percentile":310},"2026-06-03",0.20005,{"date":93,"score":69,"percentile":94},[313,318],{"source":73,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":314,"cvss_v4_0":9},{"baseScore":71,"baseSeverity":315,"vectorString":74,"impactScore":316,"exploitabilityScore":317},"HIGH",8.7,5.6,{"source":79,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":319,"cvss_v4_0":9},{"baseScore":71,"baseSeverity":315,"vectorString":74,"impactScore":316,"exploitabilityScore":317},[321],{"ecosystem":9,"name":322,"vendor":323,"product":324,"cpe_part":325,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":326},"Thunderbird","mozilla","thunderbird","a",[327,334,337,341],{"version":328,"is_range":329,"range_type":73,"version_start":330,"version_start_type":331,"version_end":332,"version_end_type":333,"fixed_in":9},">= unspecified, \u003C 149",true,"unspecified","including","149","excluding",{"version":335,"is_range":329,"range_type":73,"version_start":330,"version_start_type":331,"version_end":336,"version_end_type":333,"fixed_in":9},">= unspecified, \u003C 140.9","140.9",{"version":338,"is_range":329,"range_type":339,"version_start":9,"version_start_type":9,"version_end":340,"version_end_type":333,"fixed_in":9},"lt140.9.0","cpe","140.9.0",{"version":342,"is_range":329,"range_type":339,"version_start":9,"version_start_type":9,"version_end":343,"version_end_type":333,"fixed_in":9},"lt149.0","149.0"]