Impact
An attacker who can send HTML chat messages through Matrix or XMPP can and CSS into the Thunderbird chat interface, allowing the attacker to alter the appearance of the chat window and expose users to misleading links or UI confusion.
Affected Systems
Mozilla Thunderbird clients up to version 152.0.0 and 140.12.0 are affected; the fix was applied in Thunderbird 152.0.1 and Thunderbird 140.12.1, and all later releases.
Risk and Exploitability
The CVSS score of 6.5 classifies this vulnerability as Medium severity, with an EPSS score of < 1% and no listing in the CISA KEV catalog. Exploitation requires only that an attacker can send a message via Matrix or XMPP to the victim; it does not enable remote code execution and does not require privileged access. Because the payload is rendered in the user interface, the risk is primarily user phishing links.
OpenCVE Enrichment