Security Advisory

CVE-2025-32898

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-12-05 00:00:00
Last updated 2025-12-05 14:40:16
Assigner mitre
State PUBLISHED

Description

The KDE Connect verification-code protocol before 2025-04-18 uses only 8 characters and therefore allows brute-force attacks. This affects KDE Connect before 1.33.0 on Android, KDE Connect before 25.04 on desktop, KDE Connect before 0.5 on iOS, Valent before 1.0.0.alpha.47, and GSConnect before 59.