References https://nvd.nist.gov/vuln/detail/CVE-2025-4087 https://www.mozilla.org/en-US/security/advisories/mfsa2025-31/ https://www.mozilla.org/en-US/security/advisories/mfsa2025-28/ https://www.mozilla.org/en-US/security/advisories/mfsa2025-32/ https://bugzilla.mozilla.org/show_bug.cgi?id=1952465 https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2025-4087 https://ubuntu.com/security/CVE-2025-4087 https://www.suse.com/security/cve/CVE-2025-4087.html https://explore.alas.aws.amazon.com/CVE-2025-4087.html https://security.snyk.io/vuln/SNYK-UNMANAGED-THUNDERBIRD-10231781
Related VulnerabilitiesPoCconcretecms-9-1-3-xpath-injection: concretecms-9.1.3 - XPath注入 - 文件路径遍历(CVE-2025-4083)Firefox和Thunderbird进程隔离漏洞(CVE-2025-4085)特权UITour角色信息泄露和权限提升漏洞(CVE-2025-4082)macOS版Firefox和Thunderbird WebGL着色器越界读取漏洞可导致权限提升(CVE-2025-3034)Firefox和Thunderbird内存安全漏洞可导致任意代码执行绿盟SAS安全审计系统 indexpath 任意文件读取漏洞Mozilla Firefox WebExtensions SettingContent-ms策略绕过漏洞Mozilla Firefox CVE-2022-26485 XSLT 进程释放后重利用漏洞Apache Commons JXPath CVE-2022-41852 代码执行漏洞Apache Commons JXPath 远程代码执行漏洞Mozilla Firefox 安全漏洞Mozilla Thunderbird、Firefox ESR和Firefox 缓冲区错误漏洞(CVE-2020-6831)Mozilla Firefox 注入漏洞