CVE-2025-69412
EUVD-2025-20609501.01.2026, 00:15
KDE messagelib before 25.11.90 ignores SSL errors for threatMatches:find in the Google Safe Browsing Lookup API (aka phishing API), which might allow spoofing of threat data. NOTE: this Lookup API is not contacted in the messagelib default configuration.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| kde | messagelib | 𝑥 < 25.11.90 | CNA |
Debian Releases
Common Weakness Enumeration