MFSA2026-24: Security Vulnerabilities fixed in Thunderbird 140.9
Published Mar 24, 2026
·Updated
Security Vulnerabilities fixed in Thunderbird 140.9
Affected Software
1 affected componentFixes available
Mozilla Thunderbird<140.9
140.9
Event History
Mar 24, 2026
Advisory Published
via Mozilla·12:00 AM
Data Sourced
via Mozilla·12:00 AM
DescriptionSeverityAffected Software
Child vulnerabilities
Contains the following vulnerabilities.
- CVE-2026-3889
- CVE-2026-4371
- CVE-2026-4684
- CVE-2026-4685
- CVE-2026-4686
- CVE-2026-4687
- CVE-2026-4688
- CVE-2026-4689
- CVE-2026-4690
- CVE-2026-4691
- CVE-2026-4692
- CVE-2026-4693
- CVE-2026-4694
- CVE-2026-4695
- CVE-2026-4696
- CVE-2026-4697
- CVE-2026-4698
- CVE-2026-4699
- CVE-2026-4700
- CVE-2026-4701
- CVE-2026-4702
- CVE-2026-4704
- CVE-2026-4705
- CVE-2026-4706
- CVE-2026-4707
- CVE-2026-4708
- CVE-2026-4709
- CVE-2026-4710
- CVE-2026-4711
- CVE-2026-4712
- CVE-2026-4713
- CVE-2026-4714
- CVE-2026-4715
- CVE-2026-4716
- CVE-2026-4717
- CVE-2025-59375
- CVE-2026-4718
- CVE-2026-4719
- CVE-2026-4720
- CVE-2026-4721
Frequently Asked Questions
1
What is the severity of MFSA2026-24?
The severity of MFSA2026-24 is classified as high due to potential risks associated with the vulnerabilities.
2
How do I fix MFSA2026-24?
To fix MFSA2026-24, users should update their Thunderbird software to version 140.9 or later.
3
What vulnerabilities are addressed in MFSA2026-24?
MFSA2026-24 addresses multiple security vulnerabilities that could potentially compromise user data and privacy.
4
Which versions of Thunderbird are affected by MFSA2026-24?
MFSA2026-24 affects all versions of Thunderbird up to and including version 140.9.
5
Is there a workaround for MFSA2026-24?
There are no recommended workarounds for MFSA2026-24; updating to the latest version is the best course of action.