CVE-2018-5185: Medium severity Mozilla Thunderbird vulnerability
Last updated 25 August 2025
Other sources
Plaintext of decrypted emails can leak through by user submitting an embedded form.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2018-5185?
CVE-2018-5185 is a vulnerability that allows plaintext of decrypted emails to leak through by user submitting an embedded form.
Which software versions are affected by CVE-2018-5185?
CVE-2018-5185 affects Thunderbird ESR < 52.8 and Thunderbird < 52.8.
What is the severity of CVE-2018-5185?
The severity of CVE-2018-5185 is medium with a severity score of 6.5.
How can I mitigate CVE-2018-5185?
To mitigate CVE-2018-5185, update Thunderbird to version 52.8 or higher.
Where can I find more information about CVE-2018-5185?
You can find more information about CVE-2018-5185 at the following references: [Mozilla Bugzilla](https://bugzilla.mozilla.org/show_bug.cgi?id=1450345), [Mozilla Security Advisories](https://www.mozilla.org/en-US/security/advisories/mfsa2018-13/), [SecurityFocus](http://www.securityfocus.com/bid/104240).