Security Advisory

CVE-2026-84639

9.1
CRITICAL

Vulnerability Description

Triggering an error condition in certain MIME bodies would cause uninitialized memory to be used. This vulnerability was fixed in Thunderbird 155, Thunderbird 140.15, and Thunderbird 153.2.
Published Date September 1, 2026
Official Source NIST NVD Advisory