Related Vulnerabilities: CVE-2021-43541  

A security issue has been found in Firefox before version 95 and Thunderbird before version 91.4.0. When invoking protocol handlers for external protocols, a supplied parameter URL containing spaces was not properly escaped.

Severity Medium

Remote Yes

Type Incorrect calculation

Description

A security issue has been found in Firefox before version 95 and Thunderbird before version 91.4.0. When invoking protocol handlers for external protocols, a supplied parameter URL containing spaces was not properly escaped.

AVG-2608 thunderbird 91.3.2-2 High Vulnerable

AVG-2606 firefox 94.0.2-2 95.0-1 High Fixed

https://www.mozilla.org/security/advisories/mfsa2021-52/
https://www.mozilla.org/security/advisories/mfsa2021-54/
https://bugzilla.mozilla.org/show_bug.cgi?id=1696685