Thunderbird executed `javascript:` URLs when used in `object` and `embed` tags. This vulnerability affects Firefox < 141, Firefox ESR < 128.13, Firefox ESR < 140.1, Thunderbird < 141, Thunderbird < 128.13, and Thunderbird < 140.1.
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:11747 https://access.redhat.com/errata/RHSA-2025:11747
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:11748 https://access.redhat.com/errata/RHSA-2025:11748
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:11797 https://access.redhat.com/errata/RHSA-2025:11797
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2025:12045 https://access.redhat.com/errata/RHSA-2025:12045
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2025:12046 https://access.redhat.com/errata/RHSA-2025:12046
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2025:12044 https://access.redhat.com/errata/RHSA-2025:12044
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:12188 https://access.redhat.com/errata/RHSA-2025:12188
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:12187 https://access.redhat.com/errata/RHSA-2025:12187
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Extended Lifecycle Support Via RHSA-2025:12278 https://access.redhat.com/errata/RHSA-2025:12278
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2025:12302 https://access.redhat.com/errata/RHSA-2025:12302
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.2 Advanced Update Support Via RHSA-2025:12353 https://access.redhat.com/errata/RHSA-2025:12353
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2025:12360 https://access.redhat.com/errata/RHSA-2025:12360
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions Red Hat Enterprise Linux 8.6 Telecommunications Update Service Via RHSA-2025:12361 https://access.redhat.com/errata/RHSA-2025:12361
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2025:13646 https://access.redhat.com/errata/RHSA-2025:13646
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2025:13647 https://access.redhat.com/errata/RHSA-2025:13647
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2025:13648 https://access.redhat.com/errata/RHSA-2025:13648
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.2 Advanced Update Support Via RHSA-2025:13645 https://access.redhat.com/errata/RHSA-2025:13645
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2025:13650 https://access.redhat.com/errata/RHSA-2025:13650
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions Red Hat Enterprise Linux 8.6 Telecommunications Update Service Via RHSA-2025:13651 https://access.redhat.com/errata/RHSA-2025:13651
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2025:13649 https://access.redhat.com/errata/RHSA-2025:13649
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:13676 https://access.redhat.com/errata/RHSA-2025:13676