CVE-2024-7529: High severity thunderbird vulnerability
Last updated 9 September 2024
Other sources
The date picker could partially obscure security prompts. This could be used by a malicious site to trick a user into granting permissions.
— Mozilla
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-7529?
CVE-2024-7529 is considered a medium severity vulnerability due to its potential to mislead users into granting permissions.
How do I fix CVE-2024-7529?
To fix CVE-2024-7529, users should upgrade to the latest version of affected software such as Firefox or Thunderbird that addresses this vulnerability.
What versions are affected by CVE-2024-7529?
CVE-2024-7529 affects Mozilla Firefox ESR and Thunderbird versions up to 128.1.
What is the impact of CVE-2024-7529?
CVE-2024-7529 can lead to unauthorized permission grants by partially obscuring critical security prompts.
Which products are specifically impacted by CVE-2024-7529?
CVE-2024-7529 impacts Mozilla Firefox ESR versions up to 128.1 and Mozilla Thunderbird versions up to 128.1.