CVE-2025-1010 | Mozilla Thunderbird up to 128.6/134.x Custom Highlight API use after free (Nessus ID 214965)
A vulnerability was found in Mozilla Thunderbird up to 128.6/134.x. It has been declared as critical. This vulnerability affects unknown code of the component Custom Highlight API. The manipulation leads to use after free.
This vulnerability was named CVE-2025-1010. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.