Security Advisory

CVE-2025-69412

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-12-31 23:20:55
Last updated 2026-01-02 13:45:18
Assigner mitre
State PUBLISHED

Description

KDE messagelib before 25.11.90 ignores SSL errors for threatMatches:find in the Google Safe Browsing Lookup API (aka phishing API), which might allow spoofing of threat data. NOTE: this Lookup API is not contacted in the messagelib default configuration.