CVE-2024-9394 | Mozilla Thunderbird on Android Multipart Response cross-domain policy

A vulnerability was found in Mozilla Thunderbird on Android and classified as critical. Affected by this issue is some unknown functionality of the component Multipart Response Handler. The manipulation leads to permissive cross-domain policy with untrusted domains.

This vulnerability is handled as CVE-2024-9394. The attack may be launched remotely. There is no exploit available.

It is recommended to upgrade the affected component.

CVE-2024-9394 | Mozilla Thunderbird on Android Multipart Response cross-domain policy