ThreatCluster

Vulnerabilities Affecting SameSite Cookie Protections in Firefox and Thunderbird

First seen 18 Feb 2026, 14:22 UTC Api.Msrc.Microsoft 71% similarity 62

Article Content

Browse articles
ThreatCluster

Two vulnerabilities have been identified affecting SameSite cookie protections in Firefox and Thunderbird. CVE-2022-45410, published on December 22, 2022, impacts Firefox ESR versions below 102.5 and Thunderbird versions below 102.5, while CVE-2024-6611, published on July 9, 2024, affects Firefox versions below 128 and Thunderbird versions below 128. Both vulnerabilities allow for potential cross-site request forgery attacks due to improper handling of cookies.

ThreatCluster AI How this analysis works

Timeline

2022-12-22
CVE-2022-45410 published
2024-07-09
CVE-2024-6611 published
2026-02-18
Articles published detailing vulnerabilities

Community

Browse all →

Tracked Entities in This Story