CVE-2023-23601 | Mozilla Thunderbird up to 102.6 URL cross-domain policy (EUVD-2023-27701 / Nessus ID 248435)
A vulnerability described as problematic has been identified in Mozilla Thunderbird up to 102.6. This affects an unknown part of the component URL Handler. Such manipulation leads to permissive cross-domain policy with untrusted domains.
This vulnerability is documented as CVE-2023-23601. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.