Security Advisory
CVE-2022-3032
6.5
MEDIUM
Vulnerability Description
When receiving an HTML email that contained an
iframe element, which used a srcdoc attribute to define the inner HTML document, remote objects specified in the nested document, for example images or videos, were not blocked. Rather, the network was accessed, the objects were loaded and displayed. This vulnerability affects Thunderbird < 102.2.1 and Thunderbird < 91.13.1.
Published Date
December 22, 2022
Official Source
NIST NVD Advisory