CVE-2025-11719

Publication date

2025-10-14 12:27:36

Family

mozilla

State

PUBLISHED

Description

Starting in Thunderbird 143, the use of the native messaging API by web extensions on Windows could lead to crashes caused by use-after-free memory corruption. This vulnerability affects Firefox < 144 and Thunderbird < 144.