CVE Database
/

CVE-2023-3417

Back to search

CVE-2023-3417

Published: Jul 24, 2023

Modified: Dec 18, 2025

PUBLISHED

Description

Thunderbird allowed the Text Direction Override Unicode Character in filenames. An email attachment could be incorrectly shown as being a document file, while in fact it was an executable file. Newer versions of Thunderbird will strip the character and show the correct file extension. This vulnerability affects Thunderbird < 115.0.1 and Thunderbird < 102.13.1.

VendorProductVersions

Mozilla

Thunderbird

affected
unspecified - < 115.0.1

Mozilla

Thunderbird

affected
unspecified - < 102.13.1

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now