- Description
- When an email contains multiple attachments with external links via the X-Mozilla-External-Attachment-URL header, only the last link is shown when hovering over any attachment. Although the correct link is used on click, the misleading hover text could trick users into downloading content from untrusted sources. This vulnerability affects Thunderbird < 137.0.2 and Thunderbird < 128.9.2.
- Source
- security@mozilla.org
- NVD status
- Analyzed
CVSS 3.1
- Type
- Secondary
- Base score
- 6.4
- Impact score
- 4.7
- Exploitability score
- 1.6
- Vector string
- CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:H/A:L
- Severity
- MEDIUM
- 134c704f-9b21-4f2e-91b3-4a467353bcc0
- CWE-451
- Hype score
- Not currently trending
🟠 Thunderbird, UI Misleading Vulnerability, #CVE-2025-3523 (Medium) https://t.co/fLorN48kvA
@dailycve
14 Jun 2025
24 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
⚠️ Critical Thunderbird flaws (CVE-2025-3522 & CVE-2025-3523) let attackers exploit external attachment URLs to steal credentials or mislead users. Update ASAP. Details 👇 #CyberSecurity #InfoSec #Mozilla #CVEs https://t.co/LzC9OoX4Q6
@threatsbank
16 Apr 2025
7 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-3523 Thunderbird Attachment Link Hover Information Disclosure Vulnerability https://t.co/L2Yv0rnckW
@VulmonFeeds
15 Apr 2025
3 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-3523 When an email contains multiple attachments with external links via the X-Mozilla-External-Attachment-URL header, only the last link is shown when hovering over any att… https://t.co/BItjZMxMPq
@CVEnew
15 Apr 2025
241 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D11A3908-71D7-4967-8029-0D4DD57F384C",
"versionEndExcluding": "128.9.2"
},
{
"criteria": "cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "971D9339-D135-4B63-A4DA-E333080DA5E6",
"versionEndExcluding": "137.0.2",
"versionStartIncluding": "129.0"
}
],
"operator": "OR"
}
]
}
]