MFSA2026-72: Security Vulnerabilities fixed in Thunderbird 140.13
Published Jul 21, 2026
·Updated
Security Vulnerabilities fixed in Thunderbird 140.13
Affected Software
1 affected componentFixes available
Mozilla Thunderbird<140.13
140.13
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 140.13 - Upgrade
Upgrade
Mozilla Thunderbirdto a version that resolves this vulnerability.Fixed in 140.13
Event History
Jul 21, 2026
Advisory Published
via Mozilla·12:00 AM
Data Sourced
via Mozilla·12:00 AM
DescriptionSeverityAffected Software
Child vulnerabilities
Contains the following vulnerabilities.
- CVE-2026-14899
- CVE-2026-15718
- CVE-2026-15719
- CVE-2026-16349
- CVE-2026-16350
- CVE-2026-16362
- CVE-2026-16351
- CVE-2026-16352
- CVE-2026-16363
- CVE-2026-16353
- CVE-2026-16354
- CVE-2026-16368
- CVE-2026-16369
- CVE-2026-16355
- CVE-2026-16356
- CVE-2026-16357
- CVE-2026-16371
- CVE-2026-16374
- CVE-2026-16375
- CVE-2026-16377
- CVE-2026-16379
- CVE-2026-16358
- CVE-2026-16381
- CVE-2026-16383
- CVE-2026-16387
- CVE-2026-16390
- CVE-2026-16391
- CVE-2026-16359
- CVE-2026-16396
- CVE-2026-16405
- CVE-2026-16412
- CVE-2026-16360
- CVE-2026-16361
Frequently Asked Questions
1
What is the severity of MFSA2026-72?
The severity of MFSA2026-72 is rated as critical with a score of 9.
2
How do I fix MFSA2026-72?
To fix MFSA2026-72, update your Mozilla Thunderbird to version 140.13 or later.
3
What are the security vulnerabilities addressed in MFSA2026-72?
MFSA2026-72 addresses multiple security vulnerabilities that were identified and fixed in Thunderbird 140.13.
4
When was MFSA2026-72 published?
MFSA2026-72 was published on July 21, 2026.
5
Which software is affected by MFSA2026-72?
The affected software for MFSA2026-72 is Mozilla Thunderbird.